PT-2025-51214 · Manageengine · Admanager Plus

Bitxer

·

Published

2025-12-15

·

Updated

2025-12-18

·

CVE-2025-11670

CVSS v3.1

6.4

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions ManageEngine ADManager Plus versions prior to 8025
Description The software is susceptible to an NTLM Hash Exposure issue. Exploitation of this issue is limited to technicians with the “Impersonate as Admin” option enabled.
Recommendations Update to a version equal to or greater than 8025.

Fix

Information Disclosure

Weakness Enumeration

Related Identifiers

CVE-2025-11670

Affected Products

Admanager Plus