CVE-2025-41437
Severity CVSS v4.0:
Pending analysis
Type:
CWE-79
Cross-Site Scripting (XSS)
Publication date:
09/06/2025
Last modified:
09/06/2025
Description
Zohocorp ManageEngine OpManager, NetFlow Analyzer, Network Configuration Manager, Firewall Analyzer and OpUtils versions 128565 and below are vulnerable to Reflected XSS on the login page.
Impact
Base Score 3.x
4.30
Severity 3.x
MEDIUM