Multiple threat actors have been observed opportunistically weaponizing a now-patched critical security vulnerability impacting several Zoho ManageEngine products since January 20, 2023.
Tracked asΒ CVE-2022-47966Β (CVSS score: 9.8), theΒ remote code execution flawΒ allows a complete takeover of the susceptible systems by unauthenticated attackers.
As many asΒ 24 different products, including Access