Security Advisory
CVE-2022-24562
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
In IOBit IOTransfer 4.3.1.1561, an unauthenticated attacker can send GET and POST requests to Airserv and gain arbitrary read/write access to the entire file-system (with admin privileges) on the victims endpoint, which can result in data theft and remote code execution.