Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2024-53912


An issue was discovered in the server in Veritas Enterprise Vault before 15.2, ZDI-CAN-24341. It allows remote attackers to execute arbitrary code because untrusted data, received on a .NET Remoting TCP port, is deserialized.


Published

2024-11-24T21:15:04.210

Last Modified

2024-11-29T20:55:13.483

Status

Analyzed

Source

[email protected]

Severity

CVSSv3.1: 9.8 (CRITICAL)

Weaknesses
  • Type: Primary
    CWE-502
  • Type: Secondary
    CWE-502

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application veritas enterprise_vault < 15.2 Yes

References