CVE-2017-7213

critical
Published 2017-05-15 · Modified 2026-05-13
CVSS v3
10.0
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
CVSS v2
10.0
VIR risk
10.0

Description

Zoho ManageEngine Desktop Central before build 100082 allows remote attackers to obtain control over all connected active desktops via unspecified vectors.

Predictions

Exploit likelihood
98%
Patch ETA

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

vendor Authored 2026-05-27

Vendor advisory: cve@mitre.org — https://www.manageengine.com/products/desktop-central/cve-2017-7213-remote-control-privilege-violation.html

Application impact

VendorProductVersionsFixed
zohocorpmanageengine_desktop_central-

References

CWEs

CWE-20

Verify integrity in audit chain (admin only). AS-IS.