Permalink
CVE-2025-53448
8.1 HIGH
- CVSS version: 3.1
- Attack vector (AV): NETWORK
- Attack complexity (AC): HIGH
- Privileges required (PR): NONE
- User interaction (UI): NONE
- Scope (S): UNCHANGED
- Confidentiality impact (C): HIGH
- Integrity impact (I): HIGH
- Availability impact (A): HIGH
WordPress Rally theme <= 1.1 - Local File Inclusion vulnerability
Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in axiomthemes Rally rally allows PHP Local File Inclusion.This issue affects Rally: from n/a through <= 1.1.
References
Affected products
rally
- =<<= 1.1
Matching in nixpkgs
pkgs.trigger
Fast-paced single-player racing game
pkgs.stuntrally
Stunt Rally game with Track Editor, based on VDrift and OGRE
pkgs.cro-mag-rally
Port of Cro-Mag Rally, a 2000 Macintosh game by Pangea Software, for modern operating systems
pkgs.haskellPackages.literally
Type-safe conversion of type literals into runtime values
pkgs.perlPackages.SortNaturally
Sort lexically, but sort numeral parts numerically
pkgs.perl538Packages.SortNaturally
Sort lexically, but sort numeral parts numerically
pkgs.perl540Packages.SortNaturally
Sort lexically, but sort numeral parts numerically
Package maintainers
-
@luxzeitlos Lux <lux@lux.name>
-
@shazow Andrey Petrov <andrey.petrov@shazow.net>
-
@matthewbauer Matthew Bauer <mjbauer95@gmail.com>
-
@pSub Pascal Wittmann <mail@pascal-wittmann.de>