CVE-2021-46165

HIGH

Zoho ManageEngine Desktop Central <10.0.662 - Code Injection

Title source: llm
STIX 2.1

Description

Zoho ManageEngine Desktop Central before 10.0.662, during startup, launches an executable file from the batch files, but this file's path might not be properly defined.

References (1)

Core 1

Scores

CVSS v3 7.8
EPSS 0.0010
EPSS Percentile 27.9%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

Status published
Products (1)
zohocorp/manageengine_desktop_central < 10.0.662
Published Jan 10, 2022
Tracked Since Feb 18, 2026