RULE(RULE ID:338985)

Rule General Information
Release Date: 2025-05-28
Rule Name: DELMIA Apriso Unsafe .NET Object Deserialization Attempt Vulnerability (CVE-2024-3300)
Severity:
CVE ID:
Rule Protection Details
Description: An unsafe .NET object deserialization vulnerability in DELMIA Apriso Release 2019 through Release 2024 could lead to pre-authentication remote code execution.
Impact: An attacker can carefully construct malicious serialized data and pass it to the application, and execute the malicious code constructed by the attacker when the application deserializes the object.
Affected OS: Windows, Linux, Others
Reference: https://www.3ds.com/vulnerability/advisories
Solutions
Please contact the software vendor to update the software patch.