← Back to CVE List

CVE-2023-37286

Published: 2023-07-10T02:15Z
Last Modified: 2024-11-21T08:11Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
SmartSoft SmartBPM.NET has a vulnerability of using hard-coded machine key. An unauthenticated remote attacker can use the machine key to send serialized payload to the server to execute arbitrary code and disrupt service. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt