### [CVE-2022-3167](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-3167) ![](https://img.shields.io/static/v1?label=Product&message=ikus060%2Frdiffweb&color=blue) ![](https://img.shields.io/static/v1?label=Version&message=%3C%202.4.1%20&color=brighgreen) ![](https://img.shields.io/static/v1?label=Vulnerability&message=CWE-1021%20Improper%20Restriction%20of%20Rendered%20UI%20Layers%20or%20Frames&color=brighgreen) ### Description Improper Restriction of Rendered UI Layers or Frames in GitHub repository ikus060/rdiffweb prior to 2.4.1. ### POC #### Reference - https://huntr.dev/bounties/e5c2625b-34cc-4805-8223-80f2689e4e5c #### Github - https://github.com/ARPSyndicate/cvemon - https://github.com/ikus060/minarca - https://github.com/ikus060/rdiffweb