GobyVuls/CVD-2023-2177.md
Goby cae8a7e818
Create CVD-2023-2177.md
add CVD-2023-2177
2023-04-06 20:07:53 +08:00

1.2 KiB

Yonyou NC com.ufsoft.iufo.jiuqi.JiuQiClientReqDispatch Deserialization Command Execution Vulnerability

Vulnerability Yonyou NC com.ufsoft.iufo.jiuqi.JiuQiClientReqDispatch Deserialization Command Execution Vulnerability
Chinese name 用友NC com.ufsoft.iufo.jiuqi.JiuQiClientReqDispatch 反序列化命令执行漏洞
CVSS core 9.8
FOFA Query (click to view the results directly) app="Yonyou-UFIDA-NC"
Number of assets affected 11642
Description PlaySMS is a free and open source SMS gateway software. An input validation error vulnerability existed in PlaySMS versions prior to 1.4.3, which was caused by the program not sanitizing malicious strings. An attacker could exploit this vulnerability to execute arbitrary code.
Impact An input validation error vulnerability existed in PlaySMS versions prior to 1.4.3, which was caused by the program not sanitizing malicious strings. An attacker could exploit this vulnerability to execute arbitrary code.