← Back to browse · API

CVE-2021-23758

Severity
HIGH
CVSS
8.1
EPSS
0.88768
Risk score
63.47
CISA KEV
No
PoC
No
Published
2021-12-03
Modified
2024-09-17
First seen
2026-08-07
Aliases
EUVD-2021-2466, GHSA-6R7C-6W96-8PVW, GHSA-74R6-GRJ9-8RQ6
Products
n/a:AjaxPro.2 0 <unspecified
Sources
euvd EUVD-2021-2466

Description

All versions of package ajaxpro.2 are vulnerable to Deserialization of Untrusted Data due to the possibility of deserialization of arbitrary .NET classes, which can be abused to gain remote code execution.

References