CVE-2022-28219
82Vexday Risk Score
Patch now. It exploitation observed by VulnCheck and has a working public exploit.
ssvc Actepss 97%
from disclosure to weapon82 days
Published on NVDApr 5
1st PoC+82d
metasploit+85d
VulnCheck+587d
exploitation probability
97%top 1% of all CVEs
observed exploitation
yesVulnCheck
1 public exploit(s)
Cewolf in Zoho ManageEngine ADAudit Plus before 7060 is vulnerable to an unauthenticated XXE attack that leads to Remote Code Execution.
Affected products
n/a · n/apublic PoCs found — 1
vulncheckvulncheck.com/xdb/2723422f7954unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
References
http://cewolf.sourceforge.net/new/index.htmlhttp://packetstormsecurity.com/files/167997/ManageEngine-ADAudit-Plus-Path-Traversal-XML-Injection.htmlhttps://manageengine.comhttps://www.horizon3.ai/red-team-blog-cve-2022-28219/https://www.manageengine.com/products/active-directory-audit/cve-2022-28219.html