CVE 10 CRITICAL

Hyland OnBase .NET Remoting TCP Channel Unauthenticated RCE_CVE-2025-34153

10 / 10
CRITICAL
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:H/SI:H/SA:H

Description

Hyland OnBase versions prior to 17.0.2.87 (other versions may be affected) are vulnerable to unauthenticated remote code execution via insecure deserialization on the .NET Remoting TCP channel. The service registers a listener on port 6031 with the URI endpoint TimerServer, implemented in Hyland.Core.Timers.dll. This endpoint deserializes untrusted input using the .NET BinaryFormatter, allowing attackers to execute arbitrary code under the context of NT AUTHORITY\SYSTEM.

Basic Information

ID CVE-2025-34153
Source VulnCheck
Published Aug 13, 2025 at 16:51
Modified Aug 13, 2025 at 17:27

Affected Product

Vendor Hyland Software
Product OnBase
Version *
Affected Versions Hyland Software OnBase *

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.