Ajax.NET Professional Deserialization of Untrusted Data Vulnerability
Threat Scope & Field Impact: Cybersecurity threat intelligence monitors have confirmed active in-the-wild exploitation of CVE-2021-23758 targeting Ajax.NET Professional. Successful exploitation allows threat actors to compromise application integrity and threaten user data confidentiality. Technical Advisory Summary: Ajax.NET Professional (AjaxPro) contains a deserialization of untrusted data vulnerability that could allow for remote code execution via arbitrary […]
