Critical severity9.8NVD Advisory· Published Apr 5, 2022· Updated Jun 17, 2026
CVE-2022-28219
CVE-2022-28219
Description
Cewolf in Zoho ManageEngine ADAudit Plus before 7060 is vulnerable to an unauthenticated XXE attack that leads to Remote Code Execution.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2- Zoho ManageEngine/ADAudit Plusdescription
- Range: <7060
Patches
Vulnerability mechanics
References
5- www.manageengine.com/products/active-directory-audit/cve-2022-28219.htmlnvdPatchVendor Advisory
- packetstormsecurity.com/files/167997/ManageEngine-ADAudit-Plus-Path-Traversal-XML-Injection.htmlnvdExploitThird Party AdvisoryVDB Entry
- www.horizon3.ai/red-team-blog-cve-2022-28219/nvdExploitThird Party Advisory
- cewolf.sourceforge.net/new/index.htmlnvdProductThird Party Advisory
- manageengine.comnvdVendor Advisory
News mentions
0No linked articles in our index yet.