CVE-2025-11248EPSS p42.2%

CVE-2025-11248CVE-2025-11248

zohocorp / manageengine_endpoint_central

Description

ZohoCorp ManageEngine Endpoint Central versions prior to 11.4.2528.05 are vulnerable to a sensitive information logging issue. An authenticated user with access to the logs could potentially obtain the sensitive agent token.

Scoring

CVSS 3.2 ()
VectorCVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:C/C:L/I:N/A:N
EPSS0.52% probability of exploitation · percentile 42.2% · 2026-10-10T12:00:23Z
Last modified2026-10-08
Sourced from NVD + FIRST.org EPSS. Curated for EU compliance use cases by Adam Lundqvist, Founder at SQUR.