In Zoho ManageEngine Password Manager Pro before 11.1 build 11104, attackers are able to retrieve credentials via a browser extension for non-website resource types.
| Software | From | Fixed in |
|---|---|---|
| zohocorp / manageengine_password_manager_pro | 11.1-build_11101 | 11.1-build_11101.x |
| zohocorp / manageengine_password_manager_pro | 11.1-build_11102 | 11.1-build_11102.x |
| zohocorp / manageengine_password_manager_pro | - | 11.1 |
| zohocorp / manageengine_password_manager_pro | 11.1 | 11.1.x |
| zohocorp / manageengine_password_manager_pro | 11.1-build_11103 | 11.1-build_11103.x |