Ashan Perera EventON contains a PHP remote file inclusion caused by improper control of filename in include/require statements, letting attackers include local files, exploit requires attacker to control include filename.
id: CVE-2025-32614
info:
name: EventON Lite <= 2.4 - Authenticated Local File Inclusion
author:
...