
🔍 Most pentesters stop at the password file. This researcher read the image metadata. That version number — three stages later — became CVE-2022-25634. MDVKG breaks down 5 chained vulns - CVSS 10.0 RCE in 3h 15min 🧵 https://t.co/luF1FqzbzA
Post summary
The post reveals that a researcher uncovered CVE‑2022‑25634 through image metadata, outlining a chain of five vulnerabilities that culminate in a CVSS 10.0 Remote Code Execution flaw.
