VYPR

Key Manager Plus

by Zoho

CVEs (2)

  • CVE-2022-24447MedMar 2, 2022
    risk 0.42cvss 6.5epss 0.01

    An issue was discovered in Zoho ManageEngine Key Manager Plus before 6200. A service exposed by the application allows a user, with the level Operator, to access stored SSL certificates and associated key pairs during export.

  • CVE-2021-28382MedJun 7, 2021
    risk 0.35cvss 5.4epss 0.01

    Zoho ManageEngine Key Manager Plus before 6001 allows Stored XSS on the user-management page while importing malicious user details from AD.