Beveiligingsadvies

CVE-2022-23167

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2022-06-13 16:11:55
Laatst bijgewerkt 2024-09-16 19:46:32
Toegewezen door INCD
CVSS-score 5.3
Status PUBLISHED

Beschrijving

Attacker crafts a GET request to: /mobile/downloadfile.aspx? Filename =../.. /windows/boot.ini the LFI is UNAUTHENTICATED.