CVE-2017-7213
critical
CVSS v3
10.0
CVSS v2
10.0
VIR risk
10.0
Description
Zoho ManageEngine Desktop Central before build 100082 allows remote attackers to obtain control over all connected active desktops via unspecified vectors.
Predictions
Exploit likelihood
98%
Patch ETA
—
Heuristic predictions, AS-IS, for prioritization only.
Mitigations
Vendor advisory: cve@mitre.org — https://www.manageengine.com/products/desktop-central/cve-2017-7213-remote-control-privilege-violation.html
Application impact
| Vendor | Product | Versions | Fixed |
|---|---|---|---|
| zohocorp | manageengine_desktop_central | - | |
References
CWEs
CWE-20
Verify integrity in audit chain (admin only). AS-IS.