Zoho discovers another critical vulnerability in Desktop Central
By MYBRANDBOOK
Zoho has addressed a new critical severity vulnerability that affects the company's Desktop Central and Desktop Central MSP unified endpoint management solutions. Desktop Central instances, in particular, have been hacked before and access to compromised networks sold on hacking forums since at least July 2020.
Zoho has fixed the security flaw tracked as CVE-2021-44757 and is now providing alleviation with the latest released Desktop Central and Desktop Central MSP versions. ManageEngine Desktop Central is an endpoint management platform that allows admins to deploy patches and software over the network and troubleshoot them remotely.
Last month, Zoho patched another critical vulnerability CVE-2021-44515 that could allow threat actors to bypass authentication and execute arbitrary code on unpatched ManageEngine Desktop Central servers. It also warned at the time that it found evidence in the wild exploitation and urged customers to update as soon as possible to block incoming attacks.
Zoho's ManageEngine Team explained, “An authentication bypass vulnerability that can allow a remote user to perform unauthorized actions on the server. If exploited, this vulnerability may allow an attacker to read unauthorized data or write an arbitrary zip file on the server.”
The company also advised customers to follow its security hardening guidelines for Desktop Central and Desktop Central MSP.
Nazara and ONDC set to transform in-game monetization with ‘
Nazara Technologies has teamed up with the Open Network for Digital Comme...
Jio Platforms and NICSI to offer cloud services to government
In a collaborative initiative, the National Informatics Centre Services In...
BSNL awards ₹5,000 Cr Project to RVNL-Led Consortium
A syndicate led by Rail Vikas Nigam Limited (abbreviated as RVNL), along wi...
Pinterest tracks users without consent, alleges complaint
A recent complaint alleges that Pinterest, the popular image-sharing platf...
TAC SECURITY SOLUTIONS
TP-LINK INDIA PVT. LTD.
HIMACHAL FUTURISTIC COMMUNICATIONS LTD.
DATA SAFEGUARD INDIA PRIVATE LIMITED
Icons Of India : RAJENDRA SINGH PAWAR
Rajendra Singh Pawar is the Executive Chairman and Co-Founder of NIIT ...
ICONS OF INDIA : SHAILENDER KUMAR
Shailender Kumar is senior vice president and regional managing direct...
ICONS OF INDIA : SANJAY NAYAR
Sanjay Nayar is a senior finance professional in the Indian private in...
ECIL - Electronics Corporation of India Limited
ECIL is distinguished by its diverse technological capabilities and it...
GeM - Government e Marketplace
GeM is to facilitate the procurement of goods and services by various ...
BEL - Bharat Electronics Limited
BEL is an Indian Government-owned aerospace and defence electronics co...
Indian Tech Talent Excelling The Tech World - Vinod Dham, Founder & Executive Managing Partner, IndoUS Venture Partners
Vinod Dham, known as the “Father of the Pentium Chip,” has left an...
Indian Tech Talent Excelling The Tech World - Lal Karsanbhai, President & CEO, Emerson
Lal Karsanbhai, President and CEO of Emerson, assumed the leadership i...
Indian Tech Talent Excelling The Tech World - ANJALI SUD, CEO – Tubi
Anjali Sud, the former CEO of Vimeo, now leads Tubi, Fox Corporation...