AjaxSearchPro before 4.20.8 allows Deserialization of Untrusted Data (in the import database feature of the administration panel), leading to Remote Code execution.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2021-04-14T17:49:00
Updated: 2024-08-03T22:11:06.450Z
Reserved: 2021-03-31T00:00:00
Link: CVE-2021-29654
Vulnrichment
No data.
NVD
Status : Analyzed
Published: 2021-04-14T18:15:14.737
Modified: 2021-04-21T20:36:40.777
Link: CVE-2021-29654
Redhat
No data.