Vulnerability CVE-2023-27068


Published: 2023-05-23

Description:
Deserialization of Untrusted Data in Sitecore Experience Platform through 10.2 allows remote attackers to run arbitrary code via ValidationResult.aspx.

 References:
https://blogs.night-wolf.io/0-day-vulnerabilities-at-sitecore-pagedesigner
https://dev.sitecore.net/Downloads/Sitecore%20Experience%20Platform/103/Sitecore%20Experience%20Platform%20103/Release%20Notes
https://www.sitecore.com/products/sitecore-experience-platform

Copyright 2026, cxsecurity.com

 

Back to Top