CVE-2025-65473
EUVD-2025-20270311.12.2025, 17:15
An arbitrary file rename vulnerability in the /admin/filer.php component of EasyImages 2.0 v2.8.6 and below allows attackers with Administrator privileges to execute arbitrary code via injecting a crafted payload into an uploaded file name.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| easyimages2.0_project | easyimages2.0 | 𝑥 ≤ 2.8.6 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration