Skip to main content

CVE-2015-7766

9.0
CVSS v2.0 Base Score
77.55%
HIGH RiskEPSS (99th percentile)

PGSQL:SubmitQuery.do in ZOHO ManageEngine OpManager 11.6, 11.5, and earlier allows remote administrators to bypass SQL query restrictions via a comment in the query to api/json/admin/SubmitQuery, as demonstrated by "INSERT/**/INTO."

Published: 10/9/2015
Modified: 5/6/2026
Back to CVE Lookup

Vulnerability Summary

CVSS v2 Score

9

AV:N/AC:L/Au:S/C:C/I:C/A:C

EPSS Score (Exploitation Probability)

77.55%HIGH Exploitation Risk
99th percentile

This vulnerability has a 77.55% probability of being exploited in the next 30 days, ranking higher than 99% of all scored CVEs.

CWE Classification

Related Vulnerabilities