PT-2022-16253 · Unknown · Bigfileagent

Published

2022-09-19

·

Updated

2023-06-27

·

CVE-2022-23766

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions BigFileAgent (affected versions not specified)
Description An improper input validation issue allows for arbitrary file execution in BigFileAgent. Attackers can exploit this by having victims access a malicious web page or by inserting a script using XSS into a general website.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

RCE

Weakness Enumeration

Related Identifiers

CVE-2022-23766

Affected Products

Bigfileagent