CVE-2022-24562
iotransfer
In IOBit IOTransfer 4.3.1.1561, an unauthenticated attacker can send GET and POST requests to Airserv and gain arbitrary read/write access to the entire file-system (with admin privileges) on the victim's endpoint, which can result in data theft and remote code execution.
- CVSS
- 9.8
- EPSS
- 53.2% 98.9% percentile
- CISA KEV
- Not listed
- Published
- 2022.06.17