A CWE 502: Deserialization of Untrusted Data...
Critical severity
Unreviewed
Published
Jan 31, 2023
to the GitHub Advisory Database
•
Updated Feb 15, 2023
Description
Published by the National Vulnerability Database
Jan 30, 2023
Published to the GitHub Advisory Database
Jan 31, 2023
Last updated
Feb 15, 2023
A CWE 502: Deserialization of Untrusted Data vulnerability exists that could allow code to be remotely executed on the server when unsafely deserialized data is posted to the web server. Affected Products: Data Center Expert (Versions prior to V7.9.0)
References