CVE-2026-12269

Zohocorp ManageEngine DDI Central 6.2.0 build below 6201 had a Keepalived configuration injection vulnerability in the HA configuration workflow. This issue could allow an authenticated operator-level user to modify the Keepalived configuration and potentially execute commands as root on the DDI Central host.

  • Published Sep 28, 2026
  • CVSS 8.8 high
  • 7.0% chance of exploitation in the next 30 days (EPSS)

Affected software

CVE-2026-12269 at the National Vulnerability Database