Shodan
Maps
Images
Monitor
Developer
More...
Dashboard
View Api Docs
Vulnerabilities
By Date
Known Exploited
Advanced Search
Vulnerable Software
Vendors
Products
Vulnerability Details CVE-2022-41547
Mobile Security Framework (MobSF) v0.9.2 and below was discovered to contain a local file inclusion (LFI) vulnerability in the StaticAnalyzer/views.py script. This vulnerability allows attackers to read arbitrary files via a crafted HTTP request.
Exploit prediction scoring system (EPSS) score
EPSS Score
0.038
EPSS Ranking
87.7%
CVSS Severity
CVSS v3 Score
7.5
References
https://github.com/MobSF/Mobile-Security-Framework-MobSF/commit/b9cdd1f52bdf127cf33bb1be369e374a2855f8e6#diff-69d2e38f6bba208c333da6a09a83ca65056fcb60f4e10d23f67c01bcc1ffb58c
https://github.com/MobSF/Mobile-Security-Framework-MobSF/pull/166
https://github.com/MobSF/Mobile-Security-Framework-MobSF/commit/b9cdd1f52bdf127cf33bb1be369e374a2855f8e6#diff-69d2e38f6bba208c333da6a09a83ca65056fcb60f4e10d23f67c01bcc1ffb58c
https://github.com/MobSF/Mobile-Security-Framework-MobSF/pull/166
Products affected by CVE-2022-41547
Opensecurity
»
Mobile Security Framework
»
Version:
N/A
cpe:2.3:a:opensecurity:mobile_security_framework:-
Opensecurity
»
Mobile Security Framework
»
Version:
0.8.3
cpe:2.3:a:opensecurity:mobile_security_framework:0.8.3
Opensecurity
»
Mobile Security Framework
»
Version:
0.8.4
cpe:2.3:a:opensecurity:mobile_security_framework:0.8.4
Opensecurity
»
Mobile Security Framework
»
Version:
0.8.5
cpe:2.3:a:opensecurity:mobile_security_framework:0.8.5
Opensecurity
»
Mobile Security Framework
»
Version:
0.8.6
cpe:2.3:a:opensecurity:mobile_security_framework:0.8.6
Opensecurity
»
Mobile Security Framework
»
Version:
0.8.7
cpe:2.3:a:opensecurity:mobile_security_framework:0.8.7
Opensecurity
»
Mobile Security Framework
»
Version:
0.8.8
cpe:2.3:a:opensecurity:mobile_security_framework:0.8.8
Opensecurity
»
Mobile Security Framework
»
Version:
0.8.8.1
cpe:2.3:a:opensecurity:mobile_security_framework:0.8.8.1
Opensecurity
»
Mobile Security Framework
»
Version:
0.8.8.2
cpe:2.3:a:opensecurity:mobile_security_framework:0.8.8.2
Opensecurity
»
Mobile Security Framework
»
Version:
0.9
cpe:2.3:a:opensecurity:mobile_security_framework:0.9
Opensecurity
»
Mobile Security Framework
»
Version:
0.9.1
cpe:2.3:a:opensecurity:mobile_security_framework:0.9.1
Opensecurity
»
Mobile Security Framework
»
Version:
0.9.2
cpe:2.3:a:opensecurity:mobile_security_framework:0.9.2
Products
Monitor
Search Engine
Developer API
Maps
Bulk Data
Images
Snippets
Pricing
Membership
API Subscriptions
Enterprise
Contact Us
support@shodan.io
Shodan ® - All rights reserved