Manageengine Firewall Analyzer
19 CVEs tracked. None of them is in CISA KEV.
This hub aggregates every CVE we track for Manageengine Firewall Analyzer, a product in the networking infrastructure space. Use it to gauge the current risk picture and drill into individual advisories.
Manageengine Firewall Analyzer CVEs per month
| Month | CVEs |
|---|---|
| 2024-10 | 0 |
| 2024-11 | 0 |
| 2024-12 | 0 |
| 2025-01 | 0 |
| 2025-02 | 0 |
| 2025-03 | 0 |
| 2025-04 | 0 |
| 2025-05 | 0 |
| 2025-06 | 0 |
| 2025-07 | 0 |
| 2025-08 | 0 |
| 2025-09 | 0 |
| 2025-10 | 0 |
| 2025-11 | 0 |
| 2025-12 | 0 |
| 2026-01 | 0 |
| 2026-02 | 0 |
| 2026-03 | 0 |
| 2026-04 | 0 |
| 2026-05 | 0 |
| 2026-06 | 0 |
| 2026-07 | 0 |
| 2026-08 | 0 |
| 2026-09 | 7 |
Severity
How the 19 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.
- Critical3
- High13
- Medium3
Latest CVEs
The 15 most recently published vulnerabilities affecting Manageengine Firewall Analyzer.
- CVE-2026-76978Command Injection vulnerability8.8
- CVE-2026-76979XML Injection vulnerability7.7
- CVE-2026-76980Data Exposure vulnerability7.4
- CVE-2026-84787Privilege Escalation vulnerability8.1
- CVE-2026-84789Broken Access Control vulnerability7.1
- CVE-2026-84791Broken Access Control vulnerability7.1
- CVE-2026-14913SQL Injection vulnerability8.8
- CVE-2023-47211A directory traversal vulnerability exists in the uploadMib functionality of ManageEngine OpManager 12.7.258. A specially crafted HTTP request can lead to arbitrary file creation. An attacker can s...9.1
- CVE-2023-6105ManageEngine Information Disclosure in Multiple Products5.5
- CVE-2022-36923Zoho ManageEngine OpManager, OpManager Plus, OpManager MSP, Network Configuration Manager, NetFlow Analyzer, Firewall Analyzer, and OpUtils before 2022-07-27 through 2022-07-28 (125657, 126002, 126...7.5
- CVE-2022-37024Zoho ManageEngine OpManager, OpManager Plus, OpManager MSP, Network Configuration Manager, NetFlow Analyzer, and OpUtils before 2022-07-29 through 2022-07-30 ( 125658, 126003, 126105, and 126120) a...8.8
- CVE-2022-35404ManageEngine Password Manager Pro 12100 and prior and OPManager 126100 and prior are vulnerable to unauthorized file and directory creation on a server machine.8.2
- CVE-2019-17421Incorrect file permissions on the packaged Nipper executable file in Zoho ManageEngine OpManager 12.4.072 and Firewall Analyzer 12.4.072 allow local users to elevate privileges to root by overwriti...7.8
- CVE-2019-11678The "default reports" feature in Zoho ManageEngine Firewall Analyzer before 12.3 Build 123218 is vulnerable to SQL Injection.9.8
- CVE-2019-11677The Custom Report import function in Zoho ManageEngine Firewall Analyzer before 12.3 Build 123224 is vulnerable to XML External Entity (XXE) Injection.9.8
Product grouping is registry-driven, with AI assist and human review. How it works