CVE-2024-5471: Agent takeover
Zohocorp ManageEngine DDI Central versions 4001 and prior were vulnerable to agent takeover vulnerability due to the hard-coded sensitive keys.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Zohocorp ManageEngine DDI Centralto a version that resolves this vulnerability.Fixed in 4001
Event History
Frequently Asked Questions
What is the severity of CVE-2024-5471?
CVE-2024-5471 is considered a critical vulnerability due to its potential for agent takeover.
How do I fix CVE-2024-5471?
To fix CVE-2024-5471, upgrade Zohocorp ManageEngine DDI Central to version 4002 or later.
Which versions are affected by CVE-2024-5471?
CVE-2024-5471 affects all versions of Zohocorp ManageEngine DDI Central up to and including version 4001.
What causes CVE-2024-5471?
CVE-2024-5471 is caused by the presence of hard-coded sensitive keys within the software.
Who is impacted by CVE-2024-5471?
Organizations using Zohocorp ManageEngine DDI Central versions 4001 and prior are impacted by CVE-2024-5471.