CVE-2025-26932PHP Remote File Inclusion in Chatbot

Severity
N/A
No vector
EPSS
0.5%
top 32.76%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedFeb 25

Description

Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in QuantumCloud ChatBot chatbot allows PHP Local File Inclusion.This issue affects ChatBot: from n/a through <= 6.3.5.

Affected Packages1 packages

CVEListV5quantumcloud/chatbot6.3.5

🔴Vulnerability Details

2
CVEList
WordPress WPBot plugin <= 6.3.5 - Local File Inclusion vulnerability2025-02-25
GHSA
GHSA-4m2j-fqxw-67j3: Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in QuantumCloud ChatBot allows P2025-02-25
CVE-2025-26932 — PHP Remote File Inclusion in Chatbot | cvebase