ZeroHour

CVE-2024-34274

CVSS 3.1
3.9 low
EPSS
<1%p12
Published
()
Modified
Description

OpenBD 20210306203917-6cbe797 is vulnerable to Deserialization of Untrusted Data. The cookies bdglobals and bdclient_spot of the OpenBD software uses serialized data, which can be used to execute arbitrary code on the system. NOTE: This vulnerability only affects products that are no longer supported by the maintainer.

Weakness
CWE-502
Vector
CVSS:3.1/AV:P/AC:L/PR:L/UI:R/S:U/C:L/I:L/A:L

In the news

No ingested article mentions this CVE yet.