ManageEngine security advisory—Important security fix released for ManageEngine PAM360

ManageEngine security advisory—Important security fix released for ManageEngine PAM360

Hi there,


This security advisory is to let you know that an authenticated remote code execution vulnerability was identified in PAM360. The vulnerability has been addressed, and the issue does not exist in the fixed version.

 

CVE ID: CVE-2026-18199

 

Severity : High

 

Product Name

Affected Version(s)

Fixed Version(s)

Fixed On

PAM360

8600

8601

30th July, 2026

 

 

Impact:
The remote code execution vulnerability allows an authenticated adversary to execute arbitrary operating-system commands.

Steps to Upgrade:

  1. Download the latest upgrade pack from the following link

  1. Apply the latest build to your existing product installation as per the upgrade pack instructions provided in the above links.

 

Please contact the product support for further details at the below mentioned email addresses:


Thanks,

Dhamodhara Reddy

Head -Enterprise Support

                        New to ADSelfService Plus?