CVE-2018-5338: Zohocorp ManageEngine Desktop Central

Critical severity, CVSS 9.8. EPSS: 8.7% chance of exploitation in the next 30 days.

An issue was discovered in Zoho ManageEngine Desktop Central 10.0.124 and 10.0.184: missing authentication/authorization for a database query mechanism.

Affected products

  • Zohocorp ManageEngine Desktop Central: version 10.0.124 only; version 10.0.184 only

Published 2018-04-18. Last modified 2026-06-17.