High severity8.8NVD Advisory· Published Dec 11, 2025· Updated Jun 17, 2026
CVE-2025-65472
CVE-2025-65472
Description
A Cross-Site Request Forgery (CSRF) in the /admin/admin.inc.php component of EasyImages 2.0 v2.8.6 and below allows attackers to escalate privileges to Administrator via user interaction with a malicious web page.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:easyimages2.0_project:easyimages2.0:*:*:*:*:*:*:*:*Range: <=2.8.6
<=2.8.6+ 1 more
- (no CPE)range: <=2.8.6
- (no CPE)
Patches
Vulnerability mechanics
References
2- congsec.cnnvdExploitThird Party Advisory
- gist.github.com/CongSec/a6c8b15878f19647dbd26c22b47bac65nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.