Critical severity9.8NVD Advisory· Published Jun 16, 2022· Updated Jul 9, 2026
CVE-2022-24562
CVE-2022-24562
Description
In IOBit IOTransfer 4.3.1.1561, an unauthenticated attacker can send GET and POST requests to Airserv and gain arbitrary read/write access to the entire file-system (with admin privileges) on the victim's endpoint, which can result in data theft and remote code execution.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:iobit:iotransfer:4.3.1.1561:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:iobit:iotransfer:4.3.1.1561:*:*:*:*:*:*:*
- (no CPE)range: 4.3.1.1561
- IOBit/IOTransferdescription
Patches
Vulnerability mechanics
References
3News mentions
0No linked articles in our index yet.