Gibbon LMS Insecure Deserialization (CVE-2024-24725)

Related Vulnerabilities: CVE-2024-24725  

Check Point Reference: CPAI-2024-0182 Date Published: 24 Apr 2024 Severity: High Last Updated: Wednesday 24 April, 2024 Source: Industry Reference:CVE-2024-24725
Protection Provided by:

Security Gateway
R81, R80, R77, R75

Who is Vulnerable? Gibbon 26.0.00 and prior
Gibbon LMS 26.0.00 and prior Vulnerability Description An insecure deserialization vulnerability exists in Gibbon LMS. A remote unauthenticated attacker can exploit this vulnerability by sending crafted requests to a vulnerable server. Successful exploitation of this vulnerability could allow an attacker to execute arbitrary code on the affected system.