Description
Zohocorp ManageEngine Endpoint Central versions before 11.5.2605.01 are vulnerable to local privilege escalation due to Agent upgrade.
Published: 2026-09-07
Score: 5.7 Medium
EPSS: < 1% Very Low
KEV: No
Impact: Local Privilege Escalation
Action: Apply Patch
AI Analysis

Impact

The flaw resides in Zohocorp ManageEngine Endpoint Central agents released before version 11.5.2605.01. During an agent upgrade the software incorrectly handles privilege assignment, allowing a local user to elevate their privileges on the host system. This is a classic local privilege escalation flaw (CWE‑269).

Affected Systems

Systems running Zohocorp ManageEngine Endpoint Central, version 11.5.2605.00 or earlier, are affected. The issue is specific to the agent component that performs automatic upgrades.

Risk and Exploitability

The vulnerability carries a CVSS score of 5.7, indicating moderate severity, and its EPSS score is not available. It is not listed in the CISA KEV catalog. The attack vector is local; an attacker must be able to execute code on the machine that hosts the agent. No remote exploitation evidence is provided, but a user with local access could trigger the upgrade process to gain elevated privileges.

Generated by OpenCVE AI on September 7, 2026 at 13:35 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Upgrade the ManageEngine Endpoint Central agent to version 11.5.2605.01 or later, which resolves the privilege handling bug.
  • Disable automatic agent upgrades or configure them to run only under an administrator account to prevent unchecked privilege changes.
  • Apply least‑privilege principles to local user accounts so they cannot initiate automatically upgraded processes that could lead to privilege escalation.

Generated by OpenCVE AI on September 7, 2026 at 13:35 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Mon, 07 Sep 2026 11:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'total'}, 'version': '2.0.3'}


Mon, 07 Sep 2026 10:00:00 +0000

Type Values Removed Values Added
Description Zohocorp ManageEngine Endpoint Central versions before 11.5.2605.01 are vulnerable to local privilege escalation due to Agent upgrade.
Title Privilege Escalation
First Time appeared Zohocorp
Zohocorp manageengine Endpoint Central
Weaknesses CWE-269
CPEs cpe:2.3:a:zohocorp:manageengine_endpoint_central:*:*:*:*:*:*:*:*
Vendors & Products Zohocorp
Zohocorp manageengine Endpoint Central
References
Metrics cvssV3_1

{'score': 5.7, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:L'}


Subscriptions

Zohocorp Manageengine Endpoint Central
cve-icon MITRE

Status: PUBLISHED

Assigner: Zohocorp

Published:

Updated: 2026-09-08T03:55:28.849Z

Reserved: 2026-08-21T07:49:08.910Z

Link: CVE-2026-77698

cve-icon Vulnrichment

Updated: 2026-09-07T10:46:07.379Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2026-09-07T10:16:53.673

Modified: 2026-09-08T18:35:10.323

Link: CVE-2026-77698

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-07T13:45:06Z

Weaknesses
  • CWE-269

    Improper Privilege Management