CVE Database
/

CVE-2024-28213

Back to search

CVE-2024-28213

Published: Mar 7, 2024

Modified: Aug 22, 2024

PUBLISHED

Description

nGrinder before 3.5.9 allows to accept serialized Java objects from unauthenticated users, which could allow remote attacker to execute arbitrary code via unsafe Java objects deserialization.

VendorProductVersions

NAVER

nGrinder

unaffected
3.5.9

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now