peter bassill · operator
$ cve CVE-2021-44515 JSON

CVE-2021-44515 KEV

9.8
CRITICAL · CVSS 3.1 · EPSS 99.9% (pctl 100)

Patch first

On CISA KEV — known exploited in the wild, due 2021-12-24.

Description

Zoho ManageEngine Desktop Central is vulnerable to authentication bypass, leading to remote code execution on the server, as exploited in the wild in December 2021. For Enterprise builds 10.1.2127.17 and earlier, upgrade to 10.1.2127.18. For Enterprise builds 10.1.2128.0 through 10.1.2137.2, upgrade to 10.1.2137.3. For MSP builds 10.1.2127.17 and earlier, upgrade to 10.1.2127.18. For MSP builds 10.1.2128.0 through 10.1.2137.2, upgrade to 10.1.2137.3.

Scoring

CVSS9.8 (CRITICAL, v3.1)
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS99.87% — more likely to be exploited than 100% of all CVEs
On CISA KEVyes — remediate by 2021-12-24
Public exploitnone known
Published2021-12-12
Last modified2026-06-17

CISA KEV

NameZoho Desktop Central Authentication Bypass Vulnerability
Added2021-12-10
Due2021-12-24
Vendor / productZoho / Desktop Central
Ransomware usenone reported

Affected (1)

VendorProduct
zohocorpmanageengine desktop central

References

→ the Explorer  ·  watch your stack  ·  NVD