CVE-2021-46367
8Vexday Risk Score
No sign of exploitation. No public exploitation artifact known so far.
ssvc Trackepss 30%
exploitation probability
30%top 2% of all CVEs
observed exploitation
nono source reports it
RiteCMS version 3.1.0 and below suffers from a remote code execution vulnerability in the admin panel. An authenticated attacker can upload a PHP file and bypass the .htacess configuration to deny execution of .php files in media and files directory by default.
Affected products
n/a · n/a