← Back to CVE search

CVE-2026-48972

SeedProd Pro

Description

Improper Control of Filename for Include/Require Statement in PHP Program (-PHP Remote File Inclusion-) vulnerability in SeedProd LLC SeedProd Pro allows PHP Local File Inclusion. This issue affects SeedProd Pro: from n/a before 6.19.5.

CVSS 7.5EPSS 0.309%Risk 0.77
View source
Published
2026-05-27 14:17:33
Affected versions
<6.19.5
Type
Installed app
Vector
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H