← Back to CVE List

CVE-2019-9875

Published: 2019-05-31T21:29Z
Last Modified: 2025-04-04T15:39Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
Deserialization of Untrusted Data in the anti CSRF module in Sitecore through 9.1 allows an authenticated attacker to execute arbitrary code by sending a serialized .NET object in an HTTP POST parameter. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt