Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2022-48323

Sunlogin Sunflower Simplified (aka Sunflower Simple and Personal) 1.0.1.43315 is vulnerable to a path traversal issue. A remote and unauthenticated attacker can execute arbitrary programs on the victim host by sending a crafted HTTP request, as demonstrated by /check?cmd=ping../ followed by the pathname of the powershell.exe program.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.458
EPSS Ranking 97.5%
CVSS Severity
CVSS v3 Score 9.8
Products affected by CVE-2022-48323
  • Sunlogin » Sunflower » Version: 1.0.1.43315
    cpe:2.3:a:sunlogin:sunflower:1.0.1.43315


Contact Us

Shodan ® - All rights reserved