Yonyou NC is based on the use of cloud computing, big data, artificial intelligence and other technologies to create a digital integration platform for enterprise management. Yonyou NC ActionHandlerServlet has a deserialization vulnerability that can be exploited by an attacker to execute arbitrary commands on the server. This rule supports to defend the A6: Vulnerable and Outdated Components of OWASP Top 10 - 2021. Other reference:None