An issue found in MIM software Inc MIM License Server and MIMpacs services v.6.9 thru v.7.0 fixed in v.7.0.10 allows a remote unauthenticated attacker to execute arbitrary code via the RMI Registry service.
The product deserializes untrusted data without sufficiently ensuring that the resulting data will be valid.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Mim_concurrent_license_server | Mimsoftware | 6.5.0 (including) | 7.0.9 (including) |
Mim_local_concurrent_license_server | Mimsoftware | 6.5.0 (including) | 7.0.9 (including) |