A CWE-502: Deserialization of untrusted data vulnerability exists that could allow an attacker
logged in with a user level account to gain higher privileges by providing a harmful serialized
object.
Metrics
Affected Vendors & Products
References
History
Thu, 14 Nov 2024 16:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
MITRE
Status: PUBLISHED
Assigner: schneider
Published: 2024-01-09T19:30:19.835Z
Updated: 2024-11-14T15:09:02.901Z
Reserved: 2023-12-20T22:29:58.270Z
Link: CVE-2023-7032
Vulnrichment
Updated: 2024-08-02T08:50:07.764Z
NVD
Status : Analyzed
Published: 2024-01-09T20:15:42.967
Modified: 2024-01-16T19:43:07.787
Link: CVE-2023-7032
Redhat
No data.