Zoho ManageEngine ADAudit Plus before 7006 allows attackers to write to, and execute, arbitrary files.
https://euvd.enisa.europa.eu/vulnerability/EUVD-2021-29802
http://packetstormsecurity.com/files/172258/ManageEngine-ADAudit-Plus-Remote-Code-Execution.html