S4E just found a high top 10 tcp port service scan
critical·Product Based Web Vulnerabilities·Updated Oct 18, 2025

CVE-2022-48323 Scanner

CVE-2022-48323 Scanner - Remote Code Execution (RCE) vulnerability in Sunflower

Est. Time~10 seconds
Scan TypeSingle Scan
Targetsdomain, subdomain, ipv4
CostFree
2.4k
Times Used
continuous scan runs
3.4k
Continuously Checked
assets under CS
0
Vulnerabilities Found
confirmed findings
References
CVECVE-2022-48323
9.8
CVSScritical
Exploitable remotely over the internet · no authentication required.

Sunlogin Sunflower Simplified (aka Sunflower Simple and Personal) 1.0.1.43315 is vulnerable to a path traversal issue. A remote and unauthenticated attacker can execute arbitrary programs on the victim host by sending a crafted HTTP request, as demonstrated by /check?cmd=ping../ followed by the pathname of the powershell.exe program.

Attack Vector
Network
Privileges Req.
None
User Interaction
None
Affected
n/aby n/a
n/a
Updated Aug 22, 2026View on NVD →
Detail

Sunflower is a software tool used widely for remote desktop management and system monitoring. Typically implemented by IT professionals and system administrators, it enables streamlined management of networked computers. Sunflower is employed within various business environments to facilitate secure, remote access to computers, reduce IT overhead, and enhance user support. Its features are designed to improve operational efficiency and ensure reliable remote access and control over multiple devices. Its user-friendly interface makes it accessible for both novice and experienced users. Sunflower is compatible with a range of devices, offering scalable solutions for remote connectivity needs.

The Remote Code Execution (RCE) vulnerability detected concerns the Sunflower software, specifically impacting version 1.0.1.43315. RCE vulnerabilities allow attackers to execute code remotely on the affected system, potentially leading to full system compromise. The inherent risk with RCE vulnerabilities is that they enable malicious actors to inject harmful commands or scripts. Such vulnerabilities are critical as they bypass usual security controls that require authentication. The ability to execute arbitrary code poses a significant threat to data integrity and confidentiality. RCE highlights the necessity for regular updates and patches to software systems.

Technical details of the vulnerability in Sunflower reveal that it involves a path traversal combined with command injection. A crafted HTTP request sent by a remote attacker exploits a specific endpoint in the software, using vectors like '/check?cmd=ping../'. This attack method indicates poor input validation within the software, where crafted requests manipulate commands to include system paths. The vulnerability specifically interacts with executable files, such as 'powershell.exe', to achieve the command execution. Key vulnerable parameter involves the 'cmd' parameter within the HTTP request, highlighting an area that lacks sufficient sanitization. Ensuring robust validation for all user inputs is crucial to mitigate such attack scenarios.

Exploiting this vulnerability could lead to severe outcomes, including unauthorized access to sensitive information and administrative control over affected systems. An attacker could deploy malware, exfiltrate data, or disrupt operations by executing malicious scripts. Furthermore, it could lead to lateral movement within the network, escalating security risks to adjacent systems. Organizations may face significant financial and reputational harm if such an exploit is leveraged successfully. Therefore, understanding potential impacts underscores the importance of timely vulnerability assessments and remediation strategies.

REFERENCES

Solution Advice
  • Ensure all input from users is thoroughly validated and sanitized.
  • Implement restrictions on command executions that originate from user-controlled inputs.
  • Regularly update systems and apply security patches from trusted vendors.
  • Deploy intrusion detection systems to monitor and alert on suspicious activities.
  • Review and audit systems regularly to assess security measures and identify potential vulnerabilities.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.

CVE-2022-48323 Scanner - Remote Code Execution (RCE) vulnerability in Sunflower S4E