← Back to CVE List

CVE-2022-36119

Published: 2022-08-25T23:15Z
Last Modified: 2024-11-21T07:12Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
An issue was discovered in Blue Prism Enterprise 6.0 through 7.01. In a misconfigured environment that exposes the Blue Prism Application server, it is possible for a domain authenticated user to send a crafted message to the Blue Prism Server and accomplish a remote code execution attack that is possible because of insecure deserialization. Exploitation of this vulnerability allows for code to be executed in the context of the Blue Prism Server service. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt