Zoho Corp Manageengine Endpoint Central
Don't miss out!
Thousands of developers use stack.watch to stay informed.Get an email whenever new security vulnerabilities are reported in Zoho Corp Manageengine Endpoint Central.
By the Year
In 2026 there have been 1 vulnerability in Zoho Corp Manageengine Endpoint Central with an average score of 4.3 out of ten. Last year, in 2025 Manageengine Endpoint Central had 1 security vulnerability published. At the current rates, it appears that the number of vulnerabilities last year and this year may equal out. However, the average CVE base score of the vulnerabilities in 2026 is greater by 1.10.
| Year | Vulnerabilities | Average Score |
|---|---|---|
| 2026 | 1 | 4.30 |
| 2025 | 1 | 3.20 |
| 2024 | 1 | 8.30 |
| 2023 | 1 | 5.50 |
It may take a day or so for new Manageengine Endpoint Central vulnerabilities to show up in the stats or in the list of recent security vulnerabilities. Additionally vulnerabilities may be tagged under a different product or component name.
Recent Zoho Corp Manageengine Endpoint Central Security Vulnerabilities
Endpoint Central v<11.4.2528.34 Cleartext Sensitive Data Transmission
CVE-2026-3182
4.3 - Medium
- July 21, 2026
Zohocorp ManageEngine Endpoint Central versions before 11.4.2528.34 are affected by cleartext transmission of sensitive information vulnerability.
Cleartext Transmission of Sensitive Information
Sensitive Info Log: ZMEC <11.4.2528.05 Logs Agent Token (CVE-2025-11248)
CVE-2025-11248
3.2 - Low
- October 27, 2025
ZohoCorp ManageEngine Endpoint Central versions prior to 11.4.2528.05 are vulnerable to a sensitive information logging issue. An authenticated user with access to the logs could potentially obtain the sensitive agent token.
Insertion of Sensitive Information into Log File
Endpoint Central (Zoho) Before 11.3.2406.08 Auth Fail Isolation Vulnerability
CVE-2024-38868
8.3 - High
- August 30, 2024
Zohocorp ManageEngine Endpoint Central affected by Incorrect authorization vulnerability while isolating the devices.This issue affects Endpoint Central: before 11.3.2406.08 and before 11.3.2400.15
AuthZ
Info Disclosure in ManageEngine via Exposed Encryption Keys (CVE-2023-6105)
CVE-2023-6105
5.5 - Medium
- November 15, 2023
An information disclosure vulnerability exists in multiple ManageEngine products that can result in encryption keys being exposed. A low-privileged OS user with access to the host where an affected ManageEngine product is installed can view and use the exposed key to decrypt product database passwords. This allows the user to access the ManageEngine product database.
Stay on top of Security Vulnerabilities
Want an email whenever new vulnerabilities are published for Zoho Corp Manageengine Endpoint Central or by Zoho Corp? Click the Watch button to subscribe.