CISA Warns of Hackers Exploiting Recent Zoho ManageEngine Vulnerability

Share:

The U.S. Cybersecurity and Infrastructure Security Agency (CISA) on Thursday added a recently disclosed security flaw in Zoho ManageEngine to its Known Exploited Vulnerabilities (KEV) Catalog, citing evidence of active exploitation.

“Zoho ManageEngine PAM360, Password Manager Pro, and Access Manager Plus contain an unspecified vulnerability which allows for remote code execution,” the agency said in a notice.

 

The critical vulnerability, tracked as CVE-2022-35405, is rated 9.8 out of 10 for severity on the CVSS scoring system, and was patched by Zoho as part of updates released on June 24, 2022.

Although the exact nature of the flaw remains unknown, the India-based enterprise solutions company said it addressed the issue by removing the vulnerable components that could lead to the remote execution of arbitrary code.

Zoho has also warned of the public availability of a proof-of-concept (PoC) exploit for the vulnerability, making it imperative that customers move quickly to upgrade the instances of Password Manager Pro, PAM360 and Access Manager Plus as soon as possible.

The cybersecurity agency did not share additional specifics on how the flaw is being weaponized and how widespread the exploitation efforts are, but data gathered by GreyNoise shows that in-the-wild attacks were detected on September 7, 2022.

In light of active exploitation of the vulnerability, Federal Civilian Executive Branch (FCEB) agencies are required to apply the vendor-provided patches by October 13, 2022.

https://thehackernews.com/2022/09/cisa-warns-of-hackers-exploiting-recent.html

Leave a Comment

Your email address will not be published. Required fields are marked *

loader-image
London, GB
1:35 am, Jun 1, 2025
weather icon 16°C
L: 14° | H: 17°
few clouds
Humidity: 77 %
Pressure: 1015 mb
Wind: 10 mph W
Wind Gust: 0 mph
UV Index: 0
Precipitation: 0 mm
Clouds: 20%
Rain Chance: 0%
Visibility: 10 km
Sunrise: 4:49 am
Sunset: 9:07 pm
DailyHourly
Daily ForecastHourly Forecast
Today 10:00 pm
weather icon
14° | 17°°C 0.2 mm 20% 15 mph 79 % 1015 mb 0 mm/h
Tomorrow 10:00 pm
weather icon
11° | 21°°C 0 mm 0% 12 mph 82 % 1019 mb 0 mm/h
Tue Jun 03 10:00 pm
weather icon
11° | 18°°C 1 mm 100% 15 mph 93 % 1013 mb 0 mm/h
Wed Jun 04 10:00 pm
weather icon
9° | 18°°C 0.48 mm 48% 12 mph 81 % 1011 mb 0 mm/h
Thu Jun 05 10:00 pm
weather icon
11° | 15°°C 1 mm 100% 16 mph 94 % 1011 mb 0 mm/h
Today 4:00 am
weather icon
13° | 15°°C 0 mm 0% 8 mph 79 % 1014 mb 0 mm/h
Today 7:00 am
weather icon
13° | 14°°C 0 mm 0% 10 mph 75 % 1015 mb 0 mm/h
Today 10:00 am
weather icon
17° | 17°°C 0 mm 0% 11 mph 45 % 1015 mb 0 mm/h
Today 1:00 pm
weather icon
20° | 20°°C 0 mm 0% 12 mph 37 % 1014 mb 0 mm/h
Today 4:00 pm
weather icon
20° | 20°°C 0 mm 0% 15 mph 39 % 1013 mb 0 mm/h
Today 7:00 pm
weather icon
18° | 18°°C 0.2 mm 20% 11 mph 57 % 1014 mb 0 mm/h
Today 10:00 pm
weather icon
15° | 15°°C 0 mm 0% 8 mph 72 % 1015 mb 0 mm/h
Tomorrow 1:00 am
weather icon
13° | 13°°C 0 mm 0% 7 mph 82 % 1016 mb 0 mm/h
Name Price24H (%)
Bitcoin(BTC)
€92,078.12
0.52%
Ethereum(ETH)
€2,223.45
0.02%
Tether(USDT)
€0.88
0.01%
XRP(XRP)
€1.91
2.14%
Solana(SOL)
€137.74
0.23%
USDC(USDC)
€0.88
0.00%
Dogecoin(DOGE)
€0.169178
0.15%
Shiba Inu(SHIB)
€0.000011
0.95%
Pepe(PEPE)
€0.000011
0.44%
Peanut the Squirrel(PNUT)
€0.229114
4.06%
Scroll to Top