← Back

CVE-2025-67174

nvd nist
Published: Dec 17, 2025Modified: Jun 17, 2026

JSON object

Loading...
7.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
Exploitability: 3.9 / Impact: 3.6
Source: NVD

Description

A local file inclusion (LFI) vulnerability in RiteCMS v3.1.0 allows attackers to read arbitrary files on the host via a directory traversal in the admin_language_file and default_page_language_file in the admin.php component

Affected (1)

Products: Ritecms: Ritecms
1 product
Ritecms
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 3.1.0

Timeline

No history available yet.