← Back to browse · API

CVE-2022-28810

Severity
MEDIUM
CVSS
6.8
EPSS
0.70966
Risk score
77.04
CISA KEV
Yes
PoC
No
Published
2023-03-07
Modified
2023-03-07
First seen
2026-08-07
Aliases
EUVD-2022-33248, GHSA-Q392-QG7V-XVC4
Products
Zoho:ManageEngine, n/a:n/a n/a
Sources
euvd EUVD-2022-33248
cisa.gov CVE-2022-28810

Description

Zoho ManageEngine ADSelfService Plus contains an unspecified vulnerability allowing for remote code execution when performing a password change or reset.

References