CVE-2024-3301: Post-authentication Unsafe .NET object deserialization vulnerability affecting DELMIA Apriso Release 2019 through Release 2024
Published May 30, 2024
·Updated
An unsafe .NET object deserialization vulnerability in DELMIA Apriso Release 2019 through Release 2024 could lead to post-authentication remote code execution.
Affected Software
1 affected component
DELMIA Apriso>=2019<=2024
Event History
May 30, 2024
CVE Published
via MITRE·03:18 PM
Data Sourced
via MITRE·03:18 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·04:15 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2024-3301?
CVE-2024-3301 has a high severity rating due to its potential for post-authentication remote code execution.
2
How do I fix CVE-2024-3301?
To fix CVE-2024-3301, update DELMIA Apriso to the latest patched version released by the vendor.
3
What versions of DELMIA Apriso are affected by CVE-2024-3301?
CVE-2024-3301 affects DELMIA Apriso from Release 2019 through Release 2024.
4
What type of vulnerability is CVE-2024-3301?
CVE-2024-3301 is an unsafe .NET object deserialization vulnerability.
5
Can CVE-2024-3301 lead to data breaches?
Yes, due to its remote code execution capabilities, CVE-2024-3301 could potentially lead to data breaches.