Sitecore XP 7.5 Initial Release to Sitecore XP 8.2 Update-7 is vulnerable to an insecure deserialization attack where it is possible to achieve remote command execution on the machine. No authentication or special configuration is required to exploit this vulnerability.
Metrics
Affected Vendors & Products
References
History
Mon, 03 Feb 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
kev
|
Status: PUBLISHED
Assigner: mitre
Published: 2021-11-05T09:51:18.000Z
Updated: 2025-07-30T01:37:54.377Z
Reserved: 2021-10-11T00:00:00.000Z
Link: CVE-2021-42237
Updated: 2024-08-04T03:30:37.679Z
Status : Analyzed
Published: 2021-11-05T10:15:08.240
Modified: 2025-04-03T19:15:55.907
Link: CVE-2021-42237
No data.