Security Advisory

CVE-2025-67174

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-12-17 00:00:00
Last updated 2025-12-18 18:52:43
Assigner mitre
State PUBLISHED

Description

A local file inclusion (LFI) vulnerability in RiteCMS v3.1.0 allows attackers to read arbitrary files on the host via a directory traversal in the admin_language_file and default_page_language_file in the admin.php component