CVE-2021-22855
—CVSS 3.1
9.8 critical
EPSS
2%p80
Published
()
Modified
Description
The specific function of HR Portal of Soar Cloud System accepts any type of object to be deserialized. Attackers can send malicious serialized objects to execute arbitrary commands.
- Vendors
- hr portal project
- Products
- hr portal
- Weakness
- CWE-502
- Vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
In the news0 stories
No ingested article mentions this CVE yet.