logo

Critical Vulnerability in ManageEngine Desktop Central

ID: 2fedbfe7-fa80-58e2-a15e-f6f8d95f3477

STIX ID: report--2fedbfe7-fa80-58e2-a15e-f6f8d95f3477

Feed Name: Arctic Wolf Blog

Threat Score
70/100

Date Published: 2022-01-18

Date Updated: 2026-04-26

...
...

ManageEngine released security patches for CVE-2021-44757, a critical authentication bypass in Desktop Central and Desktop Central MSP that can enable unauthorized data access or arbitrary zip file writes. Arctic Wolf recommends immediate patching (prioritizing public-facing servers), following ManageEngine hardening guidance, and monitoring intelligence sources; no PoC or confirmed exploitation was reported at the time.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.