A deserialization vulnerability in Afterlogic Aurora...
High severity
Unreviewed
Published
Oct 3, 2023
to the GitHub Advisory Database
•
Updated Apr 4, 2024
Description
Published by the National Vulnerability Database
Oct 3, 2023
Published to the GitHub Advisory Database
Oct 3, 2023
Last updated
Apr 4, 2024
A deserialization vulnerability in Afterlogic Aurora Files v9.7.3 allows attackers to execute arbitrary code via supplying a crafted .sabredav file.
References