CyberRota Analysis
AI analysis pending.
Public Exploit Signal
A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.
Detected Signals
exploit remote code execution code execution
External Security References
Note: these links are listed for security research and verification purposes only.
CVE
CVE-2022-24247
Severity
MEDIUM
CVSS
6.5
EPSS
3.89%
Original NVD Description
RiteCMS version 3.1.0 and below suffers from an arbitrary file overwrite via path traversal vulnerability in Admin Panel. Exploiting the vulnerability allows an authenticated attacker to overwrite any file in the web root (along with any other file on the server that the PHP process user has the proper permissions to write) resulting a remote code execution.