CVE-2026-92905
Received Received - Intake

DoS in Zoho ManageEngine EventLog Analyzer and Log360

Vulnerability report for CVE-2026-92905, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-09-24

Last updated on: 2026-09-24

Assigner: ManageEngine

Description

ZohoCorp ManageEngine EventLog Analyzer and Log360 before build 13071 were vulnerable to a DoS vulnerability that allowed attackers to crash the log collector using malformed syslog packets.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-09-24
Last Modified
2026-09-24
Generated
2026-09-24
AI Q&A
2026-09-24
EPSS Evaluated
N/A
NVD
EUVD

Affected Vendors & Products

Showing 2 associated CPEs
Vendor Product Version / Range
zoho manageengine_eventlog_analyzer to 13071 (exc)
zoho log360 to 13071 (exc)

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-248 An exception is thrown from a function, but it is not caught.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

CVE-2026-92905 is a medium-severity denial-of-service vulnerability affecting ZohoCorp ManageEngine EventLog Analyzer and Log360. It allows attackers to crash the log collector service by sending malformed syslog packets to the syslog listener port. The service crashes unexpectedly and requires manual restart or update to resume normal operation.

Detection Guidance

Monitor for unexpected crashes of the log collector service in EventLog Analyzer or Log360. Check for malformed syslog packets reaching the syslog listener port (typically UDP 514). Use network monitoring tools like Wireshark to capture and analyze syslog traffic for anomalies.

Impact Analysis

An unauthenticated attacker with network access to the syslog listener could exploit this flaw to disrupt syslog collection. This may lead to loss of critical log data, service downtime, and potential gaps in monitoring or auditing capabilities until the service is manually restarted or updated.

Compliance Impact

This vulnerability could impact compliance by causing interruptions in log collection, which may result in incomplete audit trails or missing critical logs required for compliance reporting under standards like GDPR or HIPAA. Organizations must ensure continuous logging to meet regulatory requirements.

Mitigation Strategies

Update EventLog Analyzer and Log360 to build 13071 or later. Ensure input validation is enabled to discard malformed syslog datagrams. Restrict network access to the syslog listener port to trusted sources only.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-92905. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart