ZDI-23-490: KeySight N8844A Data Analytics Web Service Unmarshal Deserialization of Untrusted Data Remote Code Execution Vulnerability
This vulnerability allows remote attackers to execute arbitrary code on affected installations of KeySight N8844A Data Analytics Web Service. Authentication is not required to exploit this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of ZDI-23-490?
ZDI-23-490 is classified as a high severity vulnerability due to its potential for remote code execution.
How do I fix ZDI-23-490?
To remediate ZDI-23-490, update the KeySight N8844A Data Analytics Web Service to the latest security patch provided by KeySight.
What types of attacks can ZDI-23-490 facilitate?
ZDI-23-490 can facilitate remote code execution attacks by allowing unauthorized users to execute arbitrary code.
Is authentication required to exploit ZDI-23-490?
No, ZDI-23-490 can be exploited without any authentication, making it particularly dangerous.
Which software versions are affected by ZDI-23-490?
ZDI-23-490 affects the KeySight N8844A Data Analytics Web Service, but specific versions are not delineated.