Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-fj89-4m39-36h5

Опубликовано: 17 дек. 2025
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

A local file inclusion (LFI) vulnerability in RiteCMS v3.1.0 allows attackers to read arbitrary files on the host via a directory traversal in the admin_language_file and default_page_language_file in the admin.php component

A local file inclusion (LFI) vulnerability in RiteCMS v3.1.0 allows attackers to read arbitrary files on the host via a directory traversal in the admin_language_file and default_page_language_file in the admin.php component

EPSS

Процентиль: 38%
0.00165
Низкий

7.5 High

CVSS3

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 7.5
nvd
около 2 месяцев назад

A local file inclusion (LFI) vulnerability in RiteCMS v3.1.0 allows attackers to read arbitrary files on the host via a directory traversal in the admin_language_file and default_page_language_file in the admin.php component

EPSS

Процентиль: 38%
0.00165
Низкий

7.5 High

CVSS3

Дефекты

CWE-22