HTTP: Sitecore Multiple Products ThumbnailsAccessToken Insecure Deserialization

This signature detects attempts to exploit a known vulnerability against Sitecore. A successful attack can lead to arbitrary code execution.

Extended Description

Sitecore Experience Manager (XM) and Experience Platform (XP) 10.4 before KB1002844 allow remote code execution through insecure deserialization.

Short Name
HTTP:CTS:SITECORE-MUL-INSC-DSL
Severity
Minor
Recommended
False
Recommended Action
Drop
Category
HTTP
Keywords
CVE-2025-27218 Deserialization Insecure Multiple Products Sitecore ThumbnailsAccessToken
Release Date
04/18/2025
Supported Platforms

srx-branch-12.3

srx-19.3

srx-branch-19.3

vsrx3bsd-19.2

srx-branch-19.4

vsrx-19.4

mx-12.3

mx-19.4

vmx-19.4

mx-19.3

vsrx3bsd-19.4

srx-19.4

vsrx-12.3

vmx-19.3

vsrx-19.2

srx-12.3

Sigpack Version
3801
False Positive
Unknown

Found a potential security threat?