PT-2024-25055 · Dsi · Delmia Apriso

Mehdi Elyassa

·

Published

2024-05-30

·

Updated

2024-06-03

·

CVE-2024-3301

CVSS v3.1

8.5

High

VectorAV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions DELMIA Apriso versions Release 2019 through Release 2024
Description The issue is related to an unsafe .NET object deserialization, which could lead to post-authentication remote code execution.
Recommendations For DELMIA Apriso versions Release 2019 through Release 2024, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Deserialization of Untrusted Data

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2024-3301

Affected Products

Delmia Apriso