CVE-2026-84789EPSS p46.6%
CVE-2026-84789CVE-2026-84789
Description
ZohoCorp ManageEngine OpManager and Firewall Analyzer versions 12.8.710 and below were vulnerable to a Broken Access Control vulnerability that allowed an authenticated low-privilege user to create alert notifications for firewalls outside their assigned scope.
Scoring
| CVSS | 7.1 () |
| Vector | CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:L/A:N |
| EPSS | 0.60% probability of exploitation · percentile 46.6% · 2026-10-05T12:00:23Z |
| Last modified | 2026-09-23 |