cbcvebase.
CVE-2024-36038
published 2024-06-24

CVE-2024-36038: Zoho ManageEngine ITOM products versions from 128234 to 128248 are affected by the stored cross-site scripting vulnerability in the proxy server option.

PriorityP432medium6.3CVSS 3.1
AVNACLPRLUIRSUCLIHAN
EPSS
1.43%
69.7th percentile
Zoho ManageEngine ITOM products versions from 128234 to 128248 are affected by the stored cross-site scripting vulnerability in the proxy server option.

Affected

1 ranges
VendorProductVersion rangeFixed in
manageengineopmanager>= 128234 < 128248128248
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.