CVE-2024-5675 Information

Description

Untrusted data deserialization vulnerability has been found in Mentor - Employee Portal affecting version 3.83.35. This vulnerability could allow an attacker to execute arbitrary code by injecting a malicious payload into the “ViewState” field.

Reference

https://www.incibe.es/en/incibe-cert/notices/aviso/unreliable-data-deserialization-vulnerability-mentor

Share on: