Vulnerabilities > CVE-2023-37286 - Unspecified vulnerability in Smartsoft Smartbpm.Net 6.70
Attack vector
UNKNOWN Attack complexity
UNKNOWN Privileges required
UNKNOWN Confidentiality impact
UNKNOWN Integrity impact
UNKNOWN Availability impact
UNKNOWN Summary
SmartSoft SmartBPM.NET has a vulnerability of using hard-coded machine key. An unauthenticated remote attacker can use the machine key to send serialized payload to the server to execute arbitrary code and disrupt service.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |