XSS in Zoho ManageEngine Password Manager Pro 11001 Query Report
CVE-2020-27449 Published on August 11, 2023

Cross Site Scripting (XSS) vulnerability in Query Report feature in Zoho ManageEngine Password Manager Pro version 11001, allows remote attackers to execute arbitrary code and steal cookies via crafted JavaScript payload.

NVD


Products Associated with CVE-2020-27449

You can be notified by email with stack.watch whenever vulnerabilities like CVE-2020-27449 are published in Zoho Corp Manageengine Password Manager Pro:

 

Exploit Probability

EPSS
1.34%
Percentile
79.76%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.