Home

Description

A Cross-Site Request Forgery (CSRF) in the /admin/admin.inc.php component of EasyImages 2.0 v2.8.6 and below allows attackers to escalate privileges to Administrator via user interaction with a malicious web page.

PUBLISHED Reserved 2025-11-18 | Published 2025-12-11 | Updated 2025-12-15 | Assigner mitre

References

congsec.cn/?id=20251104215007-yjddwx1

gist.github.com/CongSec/a6c8b15878f19647dbd26c22b47bac65

cve.org (CVE-2025-65472)

nvd.nist.gov (CVE-2025-65472)

Download JSON

Data based on CVE®. Copyright © 1999-2025, The MITRE Corporation. All rights reserved.