Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2021-42237

Sitecore XP 7.5 Initial Release to Sitecore XP 8.2 Update-7 is vulnerable to an insecure deserialization attack where it is possible to achieve remote command execution on the machine. No authentication or special configuration is required to exploit this vulnerability.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.944
EPSS Ranking 100.0%
CVSS Severity
CVSS v3 Score 9.8
CVSS v2 Score 10.0
Proposed Action
Sitcore XP contains an insecure deserialization vulnerability which can allow for remote code execution.
Ransomware Campaign
Known
Products affected by CVE-2021-42237


Contact Us

Shodan ® - All rights reserved