Filtered by vendor Marimer Subscriptions
Filtered by product Csla .net Subscriptions
Total 1 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2025-66631 1 Marimer 2 Csla, Csla .net 2026-03-17 9.8 Critical
CSLA .NET is a framework designed for the development of reusable, object-oriented business layers for applications. Versions 5.5.4 and below allow the use of WcfProxy. WcfProxy uses the now-obsolete NetDataContractSerializer (NDCS) and is vulnerable to remote code execution during deserialization. This vulnerability is fixed in version 6.0.0. To workaround this issue, remove the WcfProxy in data portal configurations.