An issue was discovered in the server in Veritas Enterprise Vault before 15.2, ZDI-CAN-24336. It allows remote attackers to execute arbitrary code because untrusted data, received on a .NET Remoting TCP port, is deserialized.

Redfox Security Blog


Blog from Redfox Security.

Highlights

  • A blog that mainly deals with web security.
Listed: