CVE-2024-3300: Pre-authentication Unsafe .NET object deserialization vulnerability affecting DELMIA Apriso Release 2019 through Release 2024
Published May 30, 2024
·Updated
An unsafe .NET object deserialization vulnerability in DELMIA Apriso Release 2019 through Release 2024 could lead to pre-authentication remote code execution.
Affected Software
1 affected component
DELMIA Apriso>=2019<=2024
Event History
May 30, 2024
CVE Published
via MITRE·03:19 PM
Data Sourced
via MITRE·03:19 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-3300?
CVE-2024-3300 is considered a critical vulnerability due to its potential for pre-authentication remote code execution.
2
How do I fix CVE-2024-3300?
To fix CVE-2024-3300, upgrade DELMIA Apriso to the latest version that addresses this vulnerability.
3
Which versions are affected by CVE-2024-3300?
CVE-2024-3300 affects DELMIA Apriso from versions 2019 to 2024.
4
What type of vulnerability is CVE-2024-3300?
CVE-2024-3300 is an unsafe .NET object deserialization vulnerability.
5
Can CVE-2024-3300 be exploited remotely?
Yes, CVE-2024-3300 can be exploited remotely due to its pre-authentication nature.