A critical security vulnerability has been disclosed in ManageEngine’s Exchange Reporter Plus, a popular enterprise solution for monitoring and reporting on Microsoft Exchange environments.
Tracked as CVE-2025-3835, this flaw exposes organizations to remote code execution (RCE) risks, enabling attackers to execute arbitrary commands on affected...