CVE-2025-11248 - CERT CVE
ID CVE-2025-11248
Sažetak ZohoCorp ManageEngine Endpoint Central versions prior to 11.4.2528.05 are vulnerable to a sensitive information logging issue. An authenticated user with access to the logs could potentially obtain the sensitive agent token.
Reference
CVSS
Base: 3.2
Impact: 1.4
Exploitability:1.5
Pristup
VektorSloženostAutentikacija
LOCAL LOW LOW
Impact
PovjerljivostCjelovitostDostupnost
LOW NONE NONE
CVSS vektor CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:C/C:L/I:N/A:N
Zadnje važnije ažuriranje 28-10-2025 - 13:22
Objavljeno 27-10-2025 - 13:15