8.8
/ 10
HIGH
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Description
A Cross-Site Request Forgery (CSRF) in the /admin/admin.inc.php component of EasyImages 2.0 v2.8.6 and below allows attackers to escalate privileges to Administrator via user interaction with a malicious web page.
AI Analysis
Cross-Site Request Forgery (CSRF) vulnerability allowing privilege escalation to Administrator
Basic Information
ID
CVE-2025-65472
Source
mitre
Published
Dec 11, 2025 at 00:00
Modified
Dec 15, 2025 at 16:02
Affected Product
Vendor
EasyImages Team
Product
EasyImages
Version
2.0 v2.8.6 and below
Affected Versions
n/a n/a n/a
CWE Classification
AI Assessment
AI Score
8.8 / 10
AI Severity
High
Vendor
EasyImages Team
Product
EasyImages
Version
2.0 v2.8.6 and below