EXPOSURES › CVE-2020-29312
CVE-2020-29312
CRITICAL
DETAIL
SourceNVD · cve
Published2023-04-04
CVSS9.8
Referencehttps://nvd.nist.gov/vuln/detail/CVE-2020-29312 ↗
⚡ RCE
SHAME 50/100
rce
An issue found in Zend Framework v.3.1.3 and before allow a remote attacker to execute arbitrary code via the unserialize function. Note: This has been disputed by third parties as incomplete and incorrect. The framework does not have a version that surpasses 2.x.x and was deprec
▸ RECOMMENDED ACTION Remote code execution — patch the affected products on priority.
PLAYERS IMPLICATED
DESCRIPTION
An issue found in Zend Framework v.3.1.3 and before allow a remote attacker to execute arbitrary code via the unserialize function. Note: This has been disputed by third parties as incomplete and incorrect. The framework does not have a version that surpasses 2.x.x and was deprecated in early 2020.
AFFECTED FEDRAMP PRODUCTS · 0
No correlated FedRAMP products.