Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2025-63062

Опубликовано: 09 дек. 2025
Источник: nvd
CVSS3: 7.6
EPSS Низкий

Описание

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in AndonDesign UDesign Core u-design-core allows PHP Local File Inclusion.This issue affects UDesign Core: from n/a through <= 4.14.0.

EPSS

Процентиль: 16%
0.0005
Низкий

7.6 High

CVSS3

Дефекты

CWE-98

Связанные уязвимости

CVSS3: 7.6
github
2 месяца назад

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in AndonDesign UDesign Core u-design-core allows PHP Local File Inclusion.This issue affects UDesign Core: from n/a through <= 4.14.0.

EPSS

Процентиль: 16%
0.0005
Низкий

7.6 High

CVSS3

Дефекты

CWE-98