
Proof-of-Concept-Exploit für CVE-2022-28117, das beliebiges Dateilesen über das file:/// URI-Schema in Navigate CMS ermöglicht, mit Unterstützung für Authentifizierung.
Leicht modifizierter Python-PoC
Verwendung: python3 .\poccve2022-28117.py -x file:///etc/passwd -u [username] -p [password] http://192.168.148.140/navigate