RULE(RULE ID:336788)

Rule General Information
Release Date: 2022-07-05
Rule Name: Qzdatasoft Deserialization Command Injection Vulnerability
Severity:
CVE ID:
Rule Protection Details
Description: There is a deserialization command injection vulnerability (hw) in the Qiangzhi educational administration system.
Impact: An attacker can execute arbitrary command via a successful exploit in the context of the vulnerable software.
Affected OS: Windows, Linux, Others
Reference:
Solutions
There is no information about possible countermeasures known. It may be suggested to replace the affected object with an alternative product.