CVE-2021-47850

HIGH

Mini Mouse 9.2.0 - Path Traversal via HTTP Request

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2021-47850. PoCs published by gosh.

AI-analyzed exploit summary This exploit demonstrates a path traversal vulnerability in Mini Mouse 9.2.0, allowing unauthorized access to arbitrary files and directory listings via crafted HTTP requests. The PoC includes two examples: one for reading a file and another for listing directory contents.

Description

Mini Mouse 9.2.0 contains a path traversal vulnerability that allows remote attackers to access arbitrary system files and directories through crafted HTTP requests. Attackers can retrieve sensitive files like win.ini and list contents of system directories such as C:\Users\Public by manipulating file and path parameters.

Exploits (1)

exploitdb WORKING POC
by gosh · textwebappswindows
https://www.exploit-db.com/exploits/49744

This exploit demonstrates a path traversal vulnerability in Mini Mouse 9.2.0, allowing unauthorized access to arbitrary files and directory listings via crafted HTTP requests. The PoC includes two examples: one for reading a file and another for listing directory contents.

Classification
Working Poc 100%
Attack Type
Info Leak
Complexity
Trivial
Reliability
Reliable
Target: Mini Mouse 9.2.0
No auth needed
Prerequisites: Network access to the target server · Mini Mouse 9.2.0 running on the target
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (3)

Core 3

Scores

CVSS v3 7.5
EPSS 0.0120
EPSS Percentile 64.2%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation poc
Automatable yes
Technical Impact partial

Details

CWE
CWE-22
Status published
Products (1)
yodinfo/mini_mouse 9.2.0
Published Jan 21, 2026
Tracked Since Feb 18, 2026