PT-2026-97306 · Manageengine · Opmanager

CVE-2026-75825

·

Published

2026-09-23

·

Updated

2026-09-24

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions ManageEngine OpManager versions prior to 12.8.711
Description An authentication bypass issue exists when the Application Manager Plugin is enabled, allowing an attacker to gain unauthorized access to the system.
Recommendations Update to a version newer than 12.8.710. As a temporary mitigation, disable the Application Manager Plugin.

Fix

Missing Authentication

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-75825

Affected Products

Opmanager