PT-2024-19305 · Unknown · Asgaros Forum

Le Ngoc Anh

·

Published

2024-01-24

·

Updated

2024-01-30

·

CVE-2024-22284

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Asgaros Forum versions 2.7.2 and earlier
Description The issue is related to the deserialization of untrusted data, which can lead to potential security risks. There is no information provided about the estimated number of potentially affected devices worldwide or details about real-world incidents where this issue was exploited.
Recommendations For Asgaros Forum versions 2.7.2 and earlier, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Deserialization of Untrusted Data

Weakness Enumeration

Related Identifiers

CVE-2024-22284

Affected Products

Asgaros Forum