CVE-2026-84789: CWE-639 Authorization bypass through User-Controlled key in Zohocorp ManageEngine OpManager
ZohoCorp ManageEngine OpManager and Firewall Analyzer versions 12.8.710 and below were vulnerable to a Broken Access Control vulnerability that allowed an authenticated low-privilege user to create alert notifications for firewalls outside their assigned scope.
AI Analysis
Technical Summary
CVE-2026-84789 is a Broken Access Control vulnerability in ZohoCorp ManageEngine OpManager and Firewall Analyzer versions up to 12.8.710. It allows an authenticated user with low privileges to bypass authorization restrictions and create alert notifications for firewalls that are outside their assigned scope. This vulnerability is due to improper validation of user-controlled keys used in authorization checks.
Potential Impact
An attacker with low-privilege authenticated access can create alert notifications for firewalls beyond their authorized scope, potentially leading to unauthorized monitoring or manipulation of firewall alerts. The vulnerability has a CVSS 3.1 score of 7.1, indicating high severity with high confidentiality impact, low integrity impact, and no availability impact.
Mitigation Recommendations
No official patch or remediation link is provided in the available data. Patch status is not yet confirmed — check the vendor advisory for current remediation guidance. Until a fix is available, restrict low-privilege user access and monitor for unusual alert creation activities related to firewalls outside assigned scopes.
CVE-2026-84789: CWE-639 Authorization bypass through User-Controlled key in Zohocorp ManageEngine OpManager
Description
ZohoCorp ManageEngine OpManager and Firewall Analyzer versions 12.8.710 and below were vulnerable to a Broken Access Control vulnerability that allowed an authenticated low-privilege user to create alert notifications for firewalls outside their assigned scope.
CVSS v3.1
Score 7.1high
Affected software
Zohocorp
ManageEngine OpManager
Zohocorp
ManageEngine Firewall Analyzer
Weaknesses
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
CVE-2026-84789 is a Broken Access Control vulnerability in ZohoCorp ManageEngine OpManager and Firewall Analyzer versions up to 12.8.710. It allows an authenticated user with low privileges to bypass authorization restrictions and create alert notifications for firewalls that are outside their assigned scope. This vulnerability is due to improper validation of user-controlled keys used in authorization checks.
Potential Impact
An attacker with low-privilege authenticated access can create alert notifications for firewalls beyond their authorized scope, potentially leading to unauthorized monitoring or manipulation of firewall alerts. The vulnerability has a CVSS 3.1 score of 7.1, indicating high severity with high confidentiality impact, low integrity impact, and no availability impact.
Mitigation Recommendations
No official patch or remediation link is provided in the available data. Patch status is not yet confirmed — check the vendor advisory for current remediation guidance. Until a fix is available, restrict low-privilege user access and monitor for unusual alert creation activities related to firewalls outside assigned scopes.
Technical Details
- Data Version
- 5.2
- Assigner Short Name
- Zohocorp
- Date Reserved
- 2026-09-02T10:16:27.673Z
- Cvss Version
- 3.1
- State
- PUBLISHED
Threat ID: 6ab3c000f7a7c54106bb6df3
Added to database: 09/23/2026, 12:03:12 UTC
Last enriched: 09/23/2026, 12:17:40 UTC
Last updated: 09/24/2026, 01:57:04 UTC
Views: 12
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
External Links
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.