← Back

CVE-2021-23758

nvd nist
Published: Dec 3, 2021Modified: Aug 27, 2026CISA KEV

JSON object

Loading...
9.8
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Exploitability: 3.9 / Impact: 5.9
Source: NVD

Description

All versions of package ajaxpro.2 are vulnerable to Deserialization of Untrusted Data due to the possibility of deserialization of arbitrary .NET classes, which can be abused to gain remote code execution.

Affected (2)

Ajaxpro.2
Ajax.net Professional
Configuration A
2 vulnerable
Vulnerable SoftwareAffected Versions
All versions
Before 21.10.30.1

References (8)

Timeline

No history available yet.