ManageEngine and Zoho Analytics Plus Active Directory Account Takeover Vulnerability

Vulnerability

A vulnerability exists in Zoho Analytics On-Premise and ManageEngine Analytics Plus versions prior to 6130, allowing for Active Directory (AD) account takeover. This issue arises from a hardcoded sensitive token, which could lead to unauthorized access to AD user accounts and exposure of user information. The vulnerability specifically affects Windows installations that use AD authentication without Single Sign-On (SSO) configuration.

Impact

Exploitation of this vulnerability could result in unauthorized access to AD user accounts, allowing for account takeovers and exposure of sensitive user information.

Remediation

Users can upgrade to the latest version by downloading the upgrade pack from the ManageEngine or Zoho Analytics service pack pages and following the provided upgrade instructions.

Added: Jun 9, 2025, 7:46 PM
Updated: Jun 9, 2025, 7:46 PM

Vulnerability Rating

Custom Algorithm
spread
3.1
impact
5.0
exploitability
7.4
remediation
7.7
relevance
0.0
threat
0.0
urgency
2.9
incentive
5.8

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.