VYPR

DDI Central

by Manageengine

CVEs (3)

  • CVE-2026-12571CriAug 11, 2026
    risk 0.64cvss 9.8epss 0.02

    An authentication bypass in ManageEngine DDI Central's password-reset workflow allows account takeover.

  • CVE-2024-5471HigJul 17, 2024
    risk 0.57cvss 8.8epss 0.02

    Zohocorp ManageEngine DDI Central versions 4001 and prior were vulnerable to agent takeover vulnerability due to the hard-coded sensitive keys.

  • CVE-2024-27311MedJul 17, 2024
    risk 0.36cvss 5.5epss 0.01

    Zohocorp ManageEngine DDI Central versions 4001 and prior were vulnerable to directory traversal vulnerability which allows the user to upload new files to the server folder.