cvesecurityvulnerability
CVE-2026-16053: ManageEngine M365 Backup Module Path Traversal
Path traversal in the Exchange Online backup module of ManageEngine M365 Manager Plus and M365 Security Plus builds prior to 4820 allows authenticated operators to write backup data to arbitrary filesystem locations. CVSS 3.1 score 8.5 HIGH, CWE-23. Fixed in build 4820.