PT-2026-28045 · Unknown · Gavias Kunco

Published

2026-03-25

·

Updated

2026-03-25

·

CVE-2026-32531

CVSS v3.1

8.1

High

VectorAV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions gavias Kunco versions prior to 1.4.5
Description An improper control of filename for include/require statement issue exists in gavias Kunco, allowing for PHP Local File Inclusion. The issue is related to the handling of file inclusion, potentially allowing an attacker to include arbitrary local files.
Recommendations Update gavias Kunco to version 1.4.5 or later.

Fix

Weakness Enumeration

Related Identifiers

CVE-2026-32531

Affected Products

Gavias Kunco