CVE-2023-4528

Publication date

2023-09-07 17:39:42

Family

rapid7

State

PUBLISHED

Description

Unsafe deserialization in JSCAPE MFT Server versions prior to 2023.1.9 (Windows, Linux, and MacOS) permits an attacker to run arbitrary Java code (including OS commands) via its management interface