CyberRota Analysis
AI analysis pending.
CVE
CVE-2022-23167
Severity
MEDIUM
CVSS
5.3
EPSS
0.46%
Windows
Original NVD Description
Attacker crafts a GET request to: /mobile/downloadfile.aspx? Filename =../.. /windows/boot.ini the LFI is UNAUTHENTICATED.
Related CVEs
Other vulnerabilities affecting the same vendor(s)