PT-2025-20151 · Iqonic Design · Iqonic Design Graphina

Timomangcut

·

Published

2025-05-07

·

Updated

2025-05-07

·

CVE-2025-47533

CVSS v3.1

8.1

High

VectorAV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Iqonic Design Graphina versions 3.0.4 and earlier
Description The issue is a Cross-Site Request Forgery (CSRF) vulnerability that allows PHP Local File Inclusion. This means an attacker could potentially trick a user into performing unintended actions on the web application, which could lead to the inclusion of local files, potentially revealing sensitive information.
Recommendations For Iqonic Design Graphina versions 3.0.4 and earlier, as a temporary workaround, consider implementing CSRF token validation to prevent unauthorized requests. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

CSRF

Weakness Enumeration

Related Identifiers

CVE-2025-47533

Affected Products

Iqonic Design Graphina