ZDI-23-343: ICONICS GENESIS64 PKGX File Parsing Deserialization of Untrusted Data Remote Code Execution Vulnerability
This vulnerability allows remote attackers to execute arbitrary code on affected installations of ICONICS GENESIS64. User interaction is required to exploit this vulnerability in that the target must visit a malicious page or open a malicious file.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-23-343?
The severity of ZDI-23-343 is critical because it allows remote attackers to execute arbitrary code.
How do I fix ZDI-23-343?
To fix ZDI-23-343, apply the latest security patches provided by ICONICS for GENESIS64.
Who is affected by ZDI-23-343?
Affected users are those utilizing ICONICS GENESIS64 installations that have not implemented the necessary security measures.
What type of attack vector is associated with ZDI-23-343?
The attack vector associated with ZDI-23-343 requires user interaction, such as visiting a malicious webpage or opening a malicious file.
Can ZDI-23-343 be exploited without user interaction?
No, ZDI-23-343 cannot be exploited without user interaction as it necessitates the target to visit a malicious page or open a malicious file.