RULE(RULE ID:336370)

Rule General Information
Release Date: 2022-03-28
Rule Name: Fastjson Deserialization Remote Code Execution Vulnerability -9
Severity:
CVE ID:
Rule Protection Details
Description: Fastjson is a Java library that can be used to convert Java Objects intotheir JSON representation. It can also be used to convert a JSON stringto an equivalent Java object. A deserialization vulnerability was foundin fastjson, which can lead to arbitrary code execution.
Impact: An attacker could exploit this vulnerability to have unspecified effect.
Affected OS: Windows, Linux, Others
Reference:
Solutions
Please contact the software vendor to update the software patch.