Deyue Remote Vehicle Management System v1.1 was discovered to contain a deserialization vulnerability.
The product deserializes untrusted data without sufficiently ensuring that the resulting data will be valid.
Link | Tags |
---|---|
https://hzya.anlu169.com/ms/login | product |
https://github.com/Fliggyaaa/DeYue-remote-vehicle-management-system | exploit |
https://gist.github.com/Fliggyaaa/5517fdd59853cd81724b19d2f29c6760 | third party advisory |