.. / CVE-2022-28219

Exploit for Zoho ManageEngine ADAudit Plus <7600 - XML Entity Injection/Remote Code Execution (CVE-2022-28219)

Description:

Zoho ManageEngine ADAudit Plus before version 7060 is vulnerable to an unauthenticated XML entity injection attack that can lead to remote code execution.

Nuclei Template

View the template here CVE-2022-28219.yaml

Validate with Nuclei

echo "$URL" | nuclei -t ~/nuclei-templates/http/cves/2022/CVE-2022-28219.yaml
Copy

References:

http://cewolf.sourceforge.net/new/index.html
https://www.horizon3.ai/red-team-blog-cve-2022-28219/
https://www.manageengine.com/products/active-directory-audit/cve-2022-28219.html
https://nvd.nist.gov/vuln/detail/CVE-2022-28219
https://manageengine.com