CVE-2025-60047: WordPress IPharm theme <= 1.2.3 - Local File Inclusion vulnerability
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in axiomthemes IPharm ipharm allows PHP Local File Inclusion.This issue affects IPharm: from n/a through <= 1.2.3.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-60047?
CVE-2025-60047 is classified as a critical vulnerability due to its potential for remote file inclusion risks.
How do I fix CVE-2025-60047?
To fix CVE-2025-60047, update the IPharm theme to a version higher than 1.2.3 to patch the local file inclusion issue.
What types of systems are affected by CVE-2025-60047?
CVE-2025-60047 affects the IPharm theme for WordPress versions up to and including 1.2.3.
What are the potential impacts of CVE-2025-60047?
Exploitation of CVE-2025-60047 can lead to unauthorized access to sensitive files on the server, compromising security.
Is CVE-2025-60047 actively being exploited?
There is currently no public information indicating active exploitation of CVE-2025-60047, but users should remain vigilant.