CVE-2022-48323

CVE-2022-48323

Sunlogin Sunflower Simplified (aka Sunflower Simple and Personal) 1.0.1.43315 is vulnerable to a path traversal issue. A remote and unauthenticated attacker can execute arbitrary programs on the victim host by sending a crafted HTTP request, as demonstrated by /check?cmd=ping../ followed by the pathname of the powershell.exe program.

Source: CVE-2022-48323

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다