A critical security vulnerability (CVE-2025-3835) in ManageEngine Exchange Reporter Plus allows attackers to execute arbitrary commands on servers running builds 5721 and below. A patch (build 5722) was released on May 29, 2025. Experts urge immediate updates to prevent potential system compromises and data breaches. Temporary mitigations include restricting network access and enhancing monitoring.

Kroll warns of widening gap in global cyber resilience – SecurityBrief New Zealand
Kroll warns of widening gap in global cyber resilience SecurityBrief New Zealand


