joaomatosf

2 exploits Active since May 2022
CVE-2020-23620 WRITEUP CRITICAL WORKING POC
Orlansoft ERP - Remote Code Execution via Insecure Java Deserialization
The Java Remote Management Interface of all versions of Orlansoft ERP was discovered to contain a vulnerability due to insecure deserialization of user-supplied content, which can allow attackers to execute arbitrary code via a crafted serialized Java object.
CVSS 9.8
CVE-2020-23621 WRITEUP CRITICAL WORKING POC
SVI MS Management System - Code Injection
The Java Remote Management Interface of all versions of SVI MS Management System was discovered to contain a vulnerability due to insecure deserialization of user-supplied content, which can allow attackers to execute arbitrary code via a crafted serialized Java object.
CVSS 9.8