VYPR
Critical severity9.8NVD Advisory· Published Nov 24, 2024· Updated Jun 17, 2026

CVE-2024-53909

CVE-2024-53909

Description

An issue was discovered in the server in Veritas Enterprise Vault before 15.2, ZDI-CAN-24334. It allows remote attackers to execute arbitrary code because untrusted data, received on a .NET Remoting TCP port, is deserialized.

Affected products

3
  • Symantec/Enterprise Vaultcpe-rescue3 versions
    (expand)+ 2 more
    • (no CPE)
    • cpe:2.3:a:veritas:enterprise_vault:*:*:*:*:*:*:*:*range: <15.2
    • (no CPE)range: <15.2

Patches

Vulnerability mechanics

References

1

News mentions

0

No linked articles in our index yet.