Home
HIGH: 7.5 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:NDefault status
unaffected
0.0.0 (semver) before 2.2.0
affected
Default status
unaffected
0.0.0 (semver) before 2.2.0
affected
Default status
unaffected
0.0.0 (semver) before 2.2.0
affected
Description
Due to webserver misconfiguration an unauthenticated remote attacker is able to read the source of php modules.
Problem types
CWE-284 Improper Access Control
Product status
0.0.0 (semver) before 2.2.0
0.0.0 (semver) before 2.2.0
0.0.0 (semver) before 2.2.0
Credits
Noam Moshe from Claroty Team82
Tomer Goldschmidt from Claroty Team82
References
certvde.com/de/advisories/VDE-2025-097