What is CVE-2026-6516?
Zohocorp ManageEngine ADAudit Plus versions prior to 8606 are affected by an unauthenticated Remote Code Execution vulnerability due to a vulnerable agent API. This allows attackers to execute arbitrary code on the target system without any credentials. Upgrading ADAudit Plus to the latest version is strongly recommended.
Azərbaycanca: Zohocorp ManageEngine ADAudit Plus proqramının 8606-dan əvvəlki versiyalarında zəif agent API səbəbindən autentifikasiya olunmadan uzaqdan kod icrası (Remote Code Execution) zəifliyi aşkar edilib. Bu, hücumçulara heç bir etimadnamə olmadan hədəf sistemdə ixtiyari kod işlətməyə imkan verir. ADAudit Plus-u ən son versiyaya yeniləmək tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-306
FAQ2
Which product is affected by the CVE-2026-6516 vulnerability?
This vulnerability affects Zohocorp ManageEngine ADAudit Plus versions prior to 8606.
What is the primary recommended mitigation for CVE-2026-6516?
Upgrading ADAudit Plus to the latest version is strongly recommended.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.