CVE-2020-28050: Zohocorp ManageEngine Desktop Central

Critical severity, CVSS 9.1. EPSS: 5.1% chance of exploitation in the next 30 days.

Zoho ManageEngine Desktop Central before build 10.0.647 allows a single authentication secret from multiple agents to communicate with the server.

Affected products

  • Zohocorp ManageEngine Desktop Central: before 10.0.647 (fixed in 10.0.647)

Published 2021-03-05. Last modified 2026-06-17.