Showing 1 vulnerability on this page for Desktop Central

Signals CISA KEV Ransomware Nuclei
Zoho vulnerability results
VulnerabilityTitle and contextCVSSEPSSPoCsSignalsSTIX action

Zoho Desktop Central Authentication Bypass Vulnerability

Zoho ManageEngine Desktop Central is vulnerable to authentication bypass, leading to remote code execution on the server, as exploited in the wild in December 2021. For Enterprise builds 10.1.2127.17 and earlier, upgrade to 10.1.2127.18. For Enterprise builds 10.1.2128.0 through 10.1.2137.2, upgrade to 10.1.2137.3. For MSP builds 10.1.2127.17 and earlier, upgrade to 10.1.2127.18. For MSP builds 10.1.2128.0 through 10.1.2137.2, upgrade to 10.1.2137.3.

CWE-287Dec 12, 20211 related artifact
CVSS9.8v3.1EPSS99.9%PoCs0SignalsListed in CISA KEVNo known ransomware use1 Nuclei templateSTIX