Medium severity6.5NVD Advisory· Published May 5, 2020· Updated Jun 17, 2026
CVE-2020-10859
CVE-2020-10859
Description
Zoho ManageEngine Desktop Central before 10.0.484 allows authenticated arbitrary file writes during ZIP archive extraction via Directory Traversal in a crafted AppDependency API request.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:zohocorp:manageengine_desktop_central:*:*:*:*:*:*:*:*Range: <10.0.484
- Zoho/ManageEngine Desktop Centraldescription
- Range: <10.0.484
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.