EXPOSURES › CVE-2022-25578
CVE-2022-25578
CRITICAL
DETAIL
SourceNVD · cve
Published2022-03-18
CVSS9.8
Referencehttps://nvd.nist.gov/vuln/detail/CVE-2022-25578 ↗
⚡ RCE
SHAME 50/100
rce
taocms v3.0.2 allows attackers to execute code injection via arbitrarily editing the .htaccess file.
▸ RECOMMENDED ACTION Remote code execution — patch the affected products on priority.
PLAYERS IMPLICATED
DESCRIPTION
taocms v3.0.2 allows attackers to execute code injection via arbitrarily editing the .htaccess file.
AFFECTED FEDRAMP PRODUCTS · 0
No correlated FedRAMP products.