logo

CVE-2022-28219

ID: 09ec5cd3-3ad6-503c-89c9-6637af4d388c

STIX ID: report--09ec5cd3-3ad6-503c-89c9-6637af4d388c

Feed Name: Arctic Wolf Blog

Threat Score
60/100

Date Published: 2022-06-30

Date Updated: 2026-04-26

...
...

Horizon3.ai published a proof-of-concept for CVE-2022-28219, a critical attack chain (unauthenticated XXE + Java deserialization + path traversal) in ManageEngine ADAudit Plus (all builds below 7060) that can lead to remote code execution; ManageEngine released a patch on March 30, 2022 and users are advised to upgrade to build 7063 and test changes in dev before production.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.