CVE-2018-5337: Zohocorp ManageEngine Desktop Central

Critical severity, CVSS 9.8. EPSS: 9.2% chance of exploitation in the next 30 days.

An issue was discovered in Zoho ManageEngine Desktop Central 10.0.124 and 10.0.184: directory traversal in the SCRIPT_NAME field when modifying existing scripts.

Affected products

  • Zohocorp ManageEngine Desktop Central: version 10.0.124 only; version 10.0.184 only

Published 2018-04-18. Last modified 2026-06-17.