Home / os / winmobile

ManageEngine Desktop Central Java Deserialization

Posted on 14 March 2020

This Metasploit module exploits a Java deserialization vulnerability in the getChartImage() method from the FileStorage class within ManageEngine Desktop Central versions below 10.0.474. Tested against 10.0.465 x64.

 

TOP