First published: Fri Mar 05 2021(Updated: )
Zoho ManageEngine Desktop Central before build 10.0.647 allows a single authentication secret from multiple agents to communicate with the server.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Zohocorp Manageengine Desktop Central | <10.0.647 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-28050 is a vulnerability in Zoho ManageEngine Desktop Central that allows a single authentication secret from multiple agents to communicate with the server.
The severity of CVE-2020-28050 is critical with a CVSS score of 9.1.
Zoho ManageEngine Desktop Central before build 10.0.647 is affected by CVE-2020-28050.
To fix CVE-2020-28050, you need to upgrade to Zoho ManageEngine Desktop Central build 10.0.647 or later.
CVE-2020-28050 is associated with CWE-287.