The affected product is vulnerable to the handling of...
Moderate severity
Unreviewed
Published
May 24, 2022
to the GitHub Advisory Database
•
Updated Mar 10, 2023
Description
Published by the National Vulnerability Database
Jun 9, 2020
Published to the GitHub Advisory Database
May 24, 2022
Last updated
Mar 10, 2023
The affected product is vulnerable to the handling of serialized data. The issue results from the lack of proper validation of user-supplied data, which can result in deserialization of untrusted data on the Ignition 8 Gateway (versions prior to 8.0.10), allowing an attacker to obtain sensitive information.
References