Home/CVEs/CVE-2021-42237/

CVE-2021-42237 - Sitecore XP Remote Command Execution Vulnerability

Project:Sitecore

Product:XP

Date Added:2022-03-25Due Date:2022-04-15

Vulnerability Name

Sitecore XP Remote Command Execution Vulnerability

Description

Sitcore XP contains an insecure deserialization vulnerability which can allow for remote code execution.

Known To Be Used in Ransomware Campaigns?

Known

Action

Apply updates per vendor instructions.

Additional Notes

https://nvd.nist.gov/vuln/detail/CVE-2021-42237