CVE-2026-77699 PUBLISHED

Privilege Escalation

Assigner: Zohocorp
Reserved: 21.08.2026 Published: 07.09.2026 Updated: 08.09.2026

Zohocorp ManageEngine Endpoint Central versions below 11.5.2605.01 are vulnerable to Local privilege escalation due to loading a dll from an untrusted path.

Metrics

CVSS Vector: CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:C/C:L/I:L/A:L
CVSS Score: 5

Product Status

Vendor Zohocorp
Product ManageEngine Endpoint Central
Versions Default: unaffected
  • affected from 0 to 11.5.2605.01 (excl.)

References

Problem Types

  • CWE-269: Improper Privilege Management CWE