CVE-2025-58967: WordPress Businext theme < 2.4.4 - Local File Inclusion vulnerability
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in ThemeMove Businext businext allows PHP Local File Inclusion.This issue affects Businext: from n/a through < 2.4.4.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-58967?
CVE-2025-58967 has a high severity rating due to the potential for local file inclusion vulnerabilities that can lead to unauthorized file access.
How do I fix CVE-2025-58967?
To fix CVE-2025-58967, it is recommended to upgrade ThemeMove Businext to version 2.4.4 or later to mitigate the local file inclusion vulnerability.
Which versions are affected by CVE-2025-58967?
CVE-2025-58967 affects ThemeMove Businext versions prior to 2.4.4.
What type of vulnerability is CVE-2025-58967?
CVE-2025-58967 is classified as a PHP Remote File Inclusion vulnerability that allows for improper control of file inclusion.
Is CVE-2025-58967 specific to any platforms?
Yes, CVE-2025-58967 specifically affects the ThemeMove Businext theme on WordPress.