Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeSphere SmartMag smart-mag allows PHP Local File Inclusion.This issue affects SmartMag: from n/a through <= 10.3.0.
                
            Metrics
Affected Vendors & Products
References
        History
                    Thu, 30 Oct 2025 14:45:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | 
        
        Themesphere
         Themesphere smartmag Wordpress Wordpress wordpress  | 
|
| Vendors & Products | 
        
        Themesphere
         Themesphere smartmag Wordpress Wordpress wordpress  | 
Wed, 29 Oct 2025 15:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Metrics | 
        
        cvssV3_1
         
 
  | 
Wed, 29 Oct 2025 09:00:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Description | Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeSphere SmartMag smart-mag allows PHP Local File Inclusion.This issue affects SmartMag: from n/a through <= 10.3.0. | |
| Title | WordPress SmartMag theme <= 10.3.0 - Local File Inclusion vulnerability | |
| Weaknesses | CWE-98 | |
| References | 
         | 
Status: PUBLISHED
Assigner: Patchstack
Published: 2025-10-29T08:38:09.280Z
Updated: 2025-10-29T14:34:39.293Z
Reserved: 2025-10-29T03:07:57.236Z
Link: CVE-2025-64216
Updated: 2025-10-29T14:34:27.972Z
Status : Awaiting Analysis
Published: 2025-10-29T09:15:42.687
Modified: 2025-10-30T15:03:13.440
Link: CVE-2025-64216
No data.