CVE-2026-77699: Privilege Escalation
Published Sep 7, 2026
·Updated
Zohocorp ManageEngine Endpoint Central versions below 11.5.2605.01 are vulnerable to Local privilege escalation due to loading a dll from an untrusted path.
Affected Software
1 affected component
Zohocorp ManageEngine Endpoint Central<11.5.2605.01
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
ManageEngine Endpoint Centralto a version that resolves this vulnerability.Fixed in 11.5.2605.01
Event History
Sep 7, 2026
CVE Published
via MITRE·10:30 AM
Data Sourced
via MITRE·10:30 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
Which deployments are affected?
Zohocorp ManageEngine Endpoint Central versions below 11.5.2605.01 are affected. Versions at or above 11.5.2605.01 are not identified as vulnerable by the provided information.
2
What access and conditions does an attacker need?
Exploitation requires local access, low-privileged access, and user interaction. The issue involves loading a DLL from an untrusted path and can lead to privilege escalation.