A local file inclusion (LFI) vulnerability in RiteCMS v3.1.0 allows attackers to read arbitrary files on the host via a directory traversal in the admin_language_file and default_page_language_file in the admin.php component
| Software | From | Fixed in |
|---|---|---|
| ritecms / ritecms | 3.1.0 | 3.1.0.x |