CVE-2025-69034: WordPress Lekker theme <= 1.8 - Local File Inclusion vulnerability
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Mikado-Themes Lekker lekker allows PHP Local File Inclusion.This issue affects Lekker: from n/a through <= 1.8.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-69034?
CVE-2025-69034 is classified as a critical vulnerability due to its potential for remote file inclusion leading to unauthorized access and code execution.
How do I fix CVE-2025-69034?
To fix CVE-2025-69034, update Mikado-Themes Lekker to a version greater than 1.8 that addresses this local file inclusion vulnerability.
What types of systems are affected by CVE-2025-69034?
CVE-2025-69034 affects systems running Mikado-Themes Lekker versions from n/a up to and including 1.8.
Can CVE-2025-69034 lead to data breaches?
Yes, CVE-2025-69034 can lead to data breaches as it allows attackers to include and execute files remotely.
What is the nature of the vulnerability in CVE-2025-69034?
CVE-2025-69034 is characterized as an improper control of filename for include/require statements, enabling local file inclusion in PHP applications.