ManageEngine Exchange Reporter Plus
cpe:2.3:a:zohocorp:manageengine_exchange_reporter_plus:*:*:*:*:*:*:*
- <= 5721
A regular expression denial-of-service (ReDoS) vulnerability has been identified in ManageEngine Exchange Reporter Plus versions through 5721. This vulnerability resides in the search module, where the regular expression processing can be exploited to degrade performance and disrupt normal operations.
Exploitation of this vulnerability could lead to a denial-of-service condition, where authenticated users experience significant delays or interruptions in the search functionality of the Content Search module.
Users are advised to update Exchange Reporter Plus to version 5722 or later. The latest service pack can be downloaded from the ManageEngine Exchange Reporter Plus service pack page. For assistance with the update, contact ManageEngine product support at support@exchangereporterplus.com.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.