Gladinet CentreStack through 16.1.10296.56315 has a insecure deserialization vulnerability due to the CentreStack portal's hardcoded machineKey use. This enables threat actors (who know the machineKey) to serialize a payload for server-side deserialization to achieve remote code execution.