Endpoint Central
8 CVEs tracked. 1 of them are in CISA KEV.
This hub aggregates every CVE we track for Endpoint Central, a product in the enterprise software space. Use it to gauge the current risk picture and drill into individual advisories.
Endpoint Central CVEs per month
| Month | CVEs |
|---|---|
| 2024-10 | 0 |
| 2024-11 | 1 |
| 2024-12 | 0 |
| 2025-01 | 0 |
| 2025-02 | 1 |
| 2025-03 | 0 |
| 2025-04 | 0 |
| 2025-05 | 0 |
| 2025-06 | 0 |
| 2025-07 | 0 |
| 2025-08 | 0 |
| 2025-09 | 1 |
| 2025-10 | 2 |
| 2025-11 | 0 |
| 2025-12 | 0 |
| 2026-01 | 0 |
| 2026-02 | 0 |
| 2026-03 | 0 |
| 2026-04 | 0 |
| 2026-05 | 0 |
| 2026-06 | 0 |
| 2026-07 | 0 |
| 2026-08 | 0 |
| 2026-09 | 0 |
Severity
How the 8 CVEs score on CVSS. Severity is not exploitation: KEV is counted above.
- Critical1
- High3
- Medium1
- Low3
Latest CVEs
The 8 most recently published vulnerabilities affecting Endpoint Central.
- CVE-2025-7473XML Injection5.2
- CVE-2025-5496Arbitrary File Deletion3.3
- CVE-2025-5494Privilege Escalation3.9
- CVE-2024-9097IDOR3.5
- CVE-2024-10203Agent Arbitrary File Deletion7.0
- CVE-2024-38868Incorrect Authorization7.6
- CVE-2024-38869Incorrect Authorization8.3
- CVE-2022-47966Multiple Zoho ManageEngine on-premise products, such as ServiceDesk Plus through 14003, allow remote code execution due to use of Apache Santuario xmlsec (aka XML Security for Java) 1.4.1, because ...9.8
Product grouping is registry-driven, with AI assist and human review. How it works