Deserialization of Untrusted Data Vulnerability in aEnrich Technology a+HRD MSMQ

Deserialization of Untrusted Data Vulnerability in aEnrich Technology a+HRD MSMQ

CVE-2023-20853 · CRITICAL Severity

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

aEnrich Technology a+HRD has a vulnerability of Deserialization of Untrusted Data within its MSMQ asynchronized message process. An unauthenticated remote attacker can exploit this vulnerability to execute arbitrary system commands to perform arbitrary system operation or disrupt service.

Learn more about our Web Application Penetration Testing UK.