CVE-2025-24605: WordPress WOLF plugin <= 1.0.8.5 - Path Traversal vulnerability
Published Feb 3, 2025
·Updated
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in RealMag777 WOLF bulk-editor allows Path Traversal.This issue affects WOLF: from n/a through <= 1.0.8.5.
Affected Software
2 affected components
Pluginus Wolf - Wordpress Posts Bulk Editor And Products Manager Professional Wordpress<1.0.8.6
realmag777 WOLF>n/a, <=1.0.8.5
Event History
Feb 3, 2025
CVE Published
via MITRE·02:22 PM
Data Sourced
via MITRE·02:22 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·03:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-24605?
CVE-2025-24605 is classified as a Path Traversal vulnerability that can potentially allow unauthorized access to restricted files.
2
How do I fix CVE-2025-24605?
To fix CVE-2025-24605, update the realmag777 WOLF plugin to a version later than 1.0.8.5.
3
What versions of WOLF are affected by CVE-2025-24605?
CVE-2025-24605 affects all versions of WOLF from n/a through 1.0.8.5.
4
What causes CVE-2025-24605?
CVE-2025-24605 is caused by an improper limitation of a pathname that permits unauthorized traversal of directories.
5
What types of attacks can CVE-2025-24605 enable?
CVE-2025-24605 can enable attackers to access sensitive files on the server by exploiting the Path Traversal vulnerability.