Description
ImpactThe default .htaccess file has some restrictions in the access to PHP files to only allow specific PHP files to be executed in the root of the application. This logic isn't correct, as the regex in the second FilesMatch only checks the filename, not the full path.
INFO
Published Date :
2024-09-18T14:47:09.029Z
Last Modified :
2024-09-18T21:28:12.305Z
Source :
Mautic
AFFECTED PRODUCTS
The following products are affected by CVE-2022-25769 vulnerability.
| Vendors | Products |
|---|---|
| Mautic |
|
REFERENCES
Here, you will find a curated list of external links that provide in-depth information to CVE-2022-25769.
CVSS Vulnerability Scoring System
Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact