← Back to CVE List

CVE-2018-20221

Published: 2019-03-21T16:00Z
Last Modified: 2024-11-21T04:01Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
Secure/SAService.rem in Deltek Ajera Timesheets 9.10.16 and prior are vulnerable to remote code execution via deserialization of untrusted user input from an authenticated user. The executed code will run as the IIS Application Pool that is running the application. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt