The Storage API module 7.x before 7.x-1.6 for Drupal might allow remote attackers to execute arbitrary code by leveraging failure to update .htaccess file contents after SA-CORE-2013-003.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.1
EPSS Ranking 92.6%