Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in EverPress Mailster mailster.This issue affects Mailster: from n/a through <= 4.0.6.
History

Wed, 01 Apr 2026 23:45:00 +0000

Type Values Removed Values Added
Description Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in EverPress Mailster allows PHP Local File Inclusion.This issue affects Mailster: from n/a through 4.0.6. Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in EverPress Mailster mailster.This issue affects Mailster: from n/a through <= 4.0.6.
Weaknesses CWE-22 CWE-98
References
Metrics cvssV3_1

{'score': 8.1, 'vector': 'CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:L/I:H/A:L'}


cve-icon MITRE

Status: PUBLISHED

Assigner: Patchstack

Published:

Updated: 2026-04-01T15:34:03.702Z

Reserved: 2024-04-15T09:13:14.696Z

Link: CVE-2024-32523

cve-icon Vulnrichment

Updated: 2024-08-02T02:13:39.675Z

cve-icon NVD

Status : Awaiting Analysis

Published: 2024-05-17T09:15:38.163

Modified: 2026-04-01T16:17:02.697

Link: CVE-2024-32523

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.