# CVE-2021-36981
Verinice.Pro 1.22.1 Unsafe Java deserialization of untrusted data, leading to Remote Code Execution using C3P0 gadget (authenticated)
PoC code to exploit the deserialization vulnerability.
See https://www.secianus.de/worum-geht-es/aktuelle-meldung/cve-2021-36981-verinicepro-unsafe-java-deserialization and https://verinice.com/en/support/security-advisory
[4.0K] /data/pocs/c58c7416f3ac156870c70f3b86a0df896aede75d
├── [ 376] README.md
└── [8.0K] send-verinice-deserial.py
0 directories, 2 files