CVE-2022-25769

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
18/09/2024
Last modified:
20/09/2024

Description

ImpactThe default .htaccess file has some restrictions in the access to PHP files to only allow specific PHP files to be executed in the root of the application.<br /> <br /> This logic isn&amp;#39;t correct, as the regex in the second FilesMatch only checks the filename, not the full path.