
PEACH
Un cadre d’isolation des locataires
CVE-2025-7429 affects ManageEngine Exchange Reporter Plus versions 5723 and below, discovered and disclosed on July 25, 2025. This high-severity vulnerability involves a Stored Cross-Site Scripting (XSS) vulnerability specifically in the Mails Deleted or Moved report feature of the application (ManageEngine Advisory).
The vulnerability is classified as a Stored XSS vulnerability that exists in the Mails Deleted or Moved report functionality of Exchange Reporter Plus. The issue has been assigned a high severity rating, indicating significant potential impact on the system's security (ManageEngine Advisory).
If successfully exploited, this vulnerability could enable attackers to create privileged accounts within the application and gain unauthorized access to the system. This presents a significant security risk to organizations using affected versions of Exchange Reporter Plus (ManageEngine Advisory).
ManageEngine has released build 5724 to address this vulnerability. Organizations are strongly advised to update their Exchange Reporter Plus installations to this latest version immediately. The update can be applied by downloading and installing the latest service pack from the ManageEngine website (ManageEngine Advisory).
Source: Ce rapport a été généré à l’aide de l’IA
Évaluation gratuite des vulnérabilités
Évaluez vos pratiques de sécurité cloud dans 9 domaines de sécurité pour évaluer votre niveau de risque et identifier les failles dans vos défenses.
Obtenez une démo personnalisée
"La meilleure expérience utilisateur que j’ai jamais vue, offre une visibilité totale sur les workloads cloud."
"Wiz fournit une interface unique pour voir ce qui se passe dans nos environnements cloud."
"Nous savons que si Wiz identifie quelque chose comme critique, c’est qu’il l’est réellement."