CVE-2023-20853: aEnrich a+HRD - Deserialization of Untrusted Data
aEnrich Technology a+HRD has a vulnerability of Deserialization of Untrusted Data within its MSMQ asynchronized message process. An unauthenticated remote attacker can exploit this vulnerability to execute arbitrary system commands to perform arbitrary system operation or disrupt service.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the vulnerability ID?
The vulnerability ID is CVE-2023-20853.
What is the title of the vulnerability?
The title of the vulnerability is 'aEnrich Technology a+HRD has a vulnerability of Deserialization of Untrusted Data within its MSMQ asynchronized message process.'
What is the severity of CVE-2023-20853?
The severity of CVE-2023-20853 is critical with a CVSS score of 9.8.
What software is affected by CVE-2023-20853?
The software affected by CVE-2023-20853 is aEnrich Technology a+HRD version 6.8.1039v844.
How can an attacker exploit CVE-2023-20853?
An unauthenticated remote attacker can exploit CVE-2023-20853 to execute arbitrary system commands and perform arbitrary system operation or disrupt service.