Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-8382 | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in WP Shuffle Subscribe to Download Lite allows PHP Local File Inclusion. This issue affects Subscribe to Download Lite: from n/a through 1.2.9. |
Solution
Update the WordPress Subscribe to Download Lite plugin to the latest available version (at least 1.3.0).
Workaround
No workaround given by the vendor.
Thu, 27 Mar 2025 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Thu, 27 Mar 2025 11:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in WP Shuffle Subscribe to Download Lite allows PHP Local File Inclusion. This issue affects Subscribe to Download Lite: from n/a through 1.2.9. | |
| Title | WordPress Subscribe to Download Lite <= 1.2.9 - Local File Inclusion Vulnerability | |
| Weaknesses | CWE-98 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2025-03-27T18:56:38.851Z
Reserved: 2025-03-26T09:20:11.232Z
Link: CVE-2025-30785
Updated: 2025-03-27T13:59:05.321Z
Status : Awaiting Analysis
Published: 2025-03-27T11:15:39.703
Modified: 2025-03-27T16:45:27.850
Link: CVE-2025-30785
No data.
OpenCVE Enrichment
No data.
EUVD