CyberRota Analysis
AI-GeneratedZohoCorp ManageEngine Applications Manager versions 182000 and earlier are vulnerable to a privilege escalation flaw that allows low-privileged users to acquire an administrator’s API key, enabling them to execute actions with elevated privileges. This high-severity vulnerability poses significant risks to system integrity and data security. Organizations using affected versions should prioritize immediate remediation to prevent potential exploitation.
CVE
CVE-2026-86678
Severity
HIGH
CVSS
8.8
EPSS
0.68%
Original NVD Description
ZohoCorp ManageEngine Applications Manager versions 182000 and below allowed a low-privileged user to obtain an administrator’s API key and use it to perform administrator-level actions.