Home

Description

Mini Mouse 9.2.0 contains a path traversal vulnerability that allows remote attackers to access arbitrary system files and directories through crafted HTTP requests. Attackers can retrieve sensitive files like win.ini and list contents of system directories such as C:\Users\Public by manipulating file and path parameters.

PUBLISHED Reserved 2026-01-14 | Published 2026-01-21 | Updated 2026-01-22 | Assigner VulnCheck




HIGH: 8.7CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N
HIGH: 7.5CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Problem types

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

Product status

9.2.0
affected

Credits

gosh finder

References

www.exploit-db.com/exploits/49744 (ExploitDB-49744) exploit

apps.apple.com/us/app/mini-mouse-remote-control/id914250948 (Mini Mouse Apple Store) product

www.vulncheck.com/advisories/mini-mouse-path-traversal (VulnCheck Advisory: Mini Mouse 9.2.0 - Path Traversal) third-party-advisory

cve.org (CVE-2021-47850)

nvd.nist.gov (CVE-2021-47850)

Download JSON