Vulnerability Description
Zohocorp ManageEngine PAM360 versions before 8202; Password Manager Pro versions before 13221; Access Manager Plus versions prior to 4401 are vulnerable to an authorization issue in the initiate remote session functionality.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Zohocorp | Manageengine Pam360 | < 8.2 |
| Zohocorp | Manageengine Access Manager Plus | < 4.4 |
| Zohocorp | Manageengine Password Manager Pro | < 13.2 |
Related Weaknesses (CWE)
References
- https://www.manageengine.com/privileged-access-management/advisory/cve-2025-1166PatchVendor Advisory
FAQ
What is CVE-2025-11669?
CVE-2025-11669 is a vulnerability with a CVSS score of 8.1 (HIGH). Zohocorp ManageEngine PAM360 versions before 8202; Password Manager Pro versions before 13221; Access Manager Plus versions prior to 4401 are vulnerable to an authorization issue in the initiate remot...
How severe is CVE-2025-11669?
CVE-2025-11669 has been rated HIGH with a CVSS base score of 8.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-11669?
Check the references section above for vendor advisories and patch information. Affected products include: Zohocorp Manageengine Pam360, Zohocorp Manageengine Access Manager Plus, Zohocorp Manageengine Password Manager Pro.