PT-2025-51214 · Manageengine · Admanager Plus
Bitxer
·
Published
2025-12-15
·
Updated
2025-12-18
·
CVE-2025-11670
CVSS v3.1
6.4
Medium
| Vector | AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
ManageEngine ADManager Plus versions prior to 8025
Description
The software is susceptible to an NTLM Hash Exposure issue. Exploitation of this issue is limited to technicians with the “Impersonate as Admin” option enabled.
Recommendations
Update to a version equal to or greater than 8025.
Fix
Information Disclosure
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Admanager Plus