Vulnerabilities > Orlansoft

DATE CVE VULNERABILITY TITLE RISK
2022-05-02 CVE-2020-23620 Deserialization of Untrusted Data vulnerability in Orlansoft ERP
The Java Remote Management Interface of all versions of Orlansoft ERP was discovered to contain a vulnerability due to insecure deserialization of user-supplied content, which can allow attackers to execute arbitrary code via a crafted serialized Java object.
network
low complexity
orlansoft CWE-502
critical
9.8