CVE-2024-38868: Zohocorp ManageEngine Endpoint Central

High severity, CVSS 8.3. EPSS: 0.8% chance of exploitation in the next 30 days.

Zohocorp ManageEngine Endpoint Central affected by Incorrect authorization vulnerability while isolating the devices.This issue affects Endpoint Central: before 11.3.2406.08 and before 11.3.2400.15

Affected products

  • Zohocorp ManageEngine Endpoint Central: before 11.3.2400.15 (fixed in 11.3.2400.15); from 11.3.2401.05, before 11.3.2406.08 (fixed in 11.3.2406.08)

Published 2024-08-30. Last modified 2026-06-17.