PoC Index

CVE-2022-34907

CRITICAL 9.8EPSS 15.9%

An authentication bypass vulnerability exists in FileWave before 14.6.3 and 14.7.x before 14.7.2. Exploitation could allow an unauthenticated actor to gain access to the system with the highest authority possible and gain full control over the FileWave platform.

CVSS v3.1
9.8 CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS
15.93% chance of exploitation in the next 30 days, 97th percentile
Published
2022-07-25
Updated
2024-08-03

Proof-of-concept exploits (1)

References

Related