CVE-2022-25769
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
18/09/2024
Last modified:
20/09/2024
Description
ImpactThe default .htaccess file has some restrictions in the access to PHP files to only allow specific PHP files to be executed in the root of the application.<br />
<br />
This logic isn&#39;t correct, as the regex in the second FilesMatch only checks the filename, not the full path.
Impact
Base Score 3.x
7.20
Severity 3.x
HIGH



