CVE-2025-31040

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in NotFound WP Food ordering and Restaurant Menu allows PHP Local File Inclusion. This issue affects WP Food ordering and Restaurant Menu: from n/a through 1.1.
Configurations

No configuration.

History

11 Apr 2025, 15:39

Type Values Removed Values Added
Summary
  • (es) Vulnerabilidad de control inadecuado del nombre de archivo para la declaración Include/Require en el programa PHP ('Inclusión de archivo remoto PHP') en NotFound WP Food ordering and Restaurant Menu permite la inclusión de archivos locales PHP. Este problema afecta a WP Food ordering and Restaurant Menu: desde n/d hasta la versión 1.1.

11 Apr 2025, 09:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-04-11 09:15

Updated : 2025-04-11 15:39


NVD link : CVE-2025-31040

Mitre link : CVE-2025-31040

CVE.ORG link : CVE-2025-31040


JSON object : View

Products Affected

No product.

CWE
CWE-98

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion')