RULE(RULE ID:338648)

Rule General Information
Release Date: 2025-01-14
Rule Name: SecFox authService API FastJson Deserialization Vulnerability
Severity:
CVE ID:
Rule Protection Details
Description: SecFox is an operation and maintenance security management and audit system launched by Qianxin Information Technology Co., LTD. It integrates "identity authentication, account management, permission control and operation and maintenance audit", providing unified operation and maintenance identity authentication, fine-grained permission control, rich operation and maintenance audit reports and multi-dimensional early warning methods. Provide enterprises with the overall operation and maintenance safety capabilities of planning in advance, controlling in the event and tracing afterwards. The use of a faulty version of the fastjson component in the authService/login interface of the SecFox Operations Security Management and Audit system allows an unauthorized attacker to directly exploit the vulnerability to de-sequence.
Impact: An attacker can carefully construct malicious serialized data and pass it to the application, and execute the malicious code constructed by the attacker when the application deserializes the object.
Affected OS: Windows, Linux, Others
Reference:
Solutions
Please contact the software vendor to update the software patch.