Unsafe deserialization in JSCAPE MFT Server versions prior to 2023.1.9 (Windows, Linux, and MacOS) permits an attacker to run arbitrary Java code (including OS commands) via its management interface
Metrics
Affected Vendors & Products
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.

Status: PUBLISHED
Assigner: rapid7
Published:
Updated: 2025-04-23T16:17:27.633Z
Reserved: 2023-08-24T20:16:59.319Z
Link: CVE-2023-4528

No data.

Status : Modified
Published: 2023-09-07T18:15:07.797
Modified: 2025-04-23T17:16:45.297
Link: CVE-2023-4528

No data.

No data.