← Back to browse · API

CVE-2024-5675

Severity
CRITICAL
CVSS
10.0
EPSS
0.00637
Risk score
40.22
CISA KEV
No
PoC
No
Published
2024-06-06
Modified
2024-08-01
First seen
2026-08-08
Aliases
EUVD-2024-46848, GHSA-W966-799G-FP7V
Products
Summar Software:Mentor – Employee Portal 3.83.35
Sources
euvd EUVD-2024-46848

Description

Untrusted data deserialization vulnerability has been found in Mentor - Employee Portal, affecting version 3.83.35. This vulnerability could allow an attacker to execute arbitrary code, by injecting a malicious payload into the “ViewState” field.

References