A AegiFlow
HIGHCVSS 7.5

CVE-2026-18911

CVE-2026-18911 updated by NVD

Modified
2026-09-20
Sources
nvd

Summary

ManageEngine DataSecurity Plus versions before 6310 are vulnerable to an agent authentication bypass, allowing unenrolled agents to send requests without proper authentication.

References

Includes data from the National Vulnerability Database (NIST). NVD data is in the public domain; this page is not endorsed by NIST.

CVE® is a registered trademark of The MITRE Corporation. CVE content reproduced under the CVE Terms of Use; copyright designation © MITRE.