Zohocorp ManageEngine Applications Manager versions 177400 and below are vulnerable to Stored Cross-Site Scripting vulnerability in the NOC view.
References
| Link | Resource |
|---|---|
| https://www.manageengine.com/products/applications_manager/security-updates/security-updates-cve-2025-9787.html | Vendor Advisory Patch |
Configurations
Configuration 1 (hide)
|
History
29 Jan 2026, 19:22
| Type | Values Removed | Values Added |
|---|---|---|
| References | () https://www.manageengine.com/products/applications_manager/security-updates/security-updates-cve-2025-9787.html - Vendor Advisory, Patch | |
| First Time |
Zohocorp
Zohocorp manageengine Applications Manager |
|
| CPE | cpe:2.3:a:zohocorp:manageengine_applications_manager:17.3:build173300:*:*:*:*:*:* cpe:2.3:a:zohocorp:manageengine_applications_manager:17.7:build177000:*:*:*:*:*:* cpe:2.3:a:zohocorp:manageengine_applications_manager:17.3:build173302:*:*:*:*:*:* cpe:2.3:a:zohocorp:manageengine_applications_manager:17.7:build177200:*:*:*:*:*:* cpe:2.3:a:zohocorp:manageengine_applications_manager:17.7:build177202:*:*:*:*:*:* cpe:2.3:a:zohocorp:manageengine_applications_manager:17.7:build177300:*:*:*:*:*:* cpe:2.3:a:zohocorp:manageengine_applications_manager:17.7:build177201:*:*:*:*:*:* cpe:2.3:a:zohocorp:manageengine_applications_manager:*:*:*:*:*:*:*:* cpe:2.3:a:zohocorp:manageengine_applications_manager:17.7:build177100:*:*:*:*:*:* cpe:2.3:a:zohocorp:manageengine_applications_manager:17.3:build173301:*:*:*:*:*:* cpe:2.3:a:zohocorp:manageengine_applications_manager:17.3:build173303:*:*:*:*:*:* cpe:2.3:a:zohocorp:manageengine_applications_manager:17.7:build177203:*:*:*:*:*:* cpe:2.3:a:zohocorp:manageengine_applications_manager:17.7:build177204:*:*:*:*:*:* cpe:2.3:a:zohocorp:manageengine_applications_manager:17.3:build173304:*:*:*:*:*:* cpe:2.3:a:zohocorp:manageengine_applications_manager:17.7:build177400:*:*:*:*:*:* cpe:2.3:a:zohocorp:manageengine_applications_manager:17.7:-:*:*:*:*:*:* |
18 Dec 2025, 15:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2025-12-18 15:16
Updated : 2026-01-29 19:22
NVD link : CVE-2025-9787
Mitre link : CVE-2025-9787
CVE.ORG link : CVE-2025-9787
JSON object : View
Products Affected
zohocorp
- manageengine_applications_manager
CWE
CWE-79
Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
