← Back to CVE List
CVE-2026-18911NVD
Description
ManageEngine DataSecurity Plus versions before 6310 are vulnerable to an agent authentication bypass, allowing unenrolled agents to send requests without proper authentication.
CVSS Base Metrics
CVSS v3 (3.1)
HIGH 7.5
CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:L/A:N
Weaknesses (CWE)
CWE-20 - CWE-20 Improper input validation
Affected & Patched Versions
| Product | Affected Versions | Patched Version |
|---|---|---|
| Zohocorp ManageEngine DataSecurity Plus | 0 - < 6310 | N/A |