CVE-2025-30777: WordPress Support Genix plugin <= 1.4.11 - Insecure Direct Object References (IDOR) Vulnerability
Authorization Bypass Through User-Controlled Key vulnerability in DevItems Support Genix support-genix-lite allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Support Genix: from n/a through <= 1.4.11.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-30777?
CVE-2025-30777 is categorized as a high-severity vulnerability due to its potential for unauthorized access through flawed access control configurations.
How do I fix CVE-2025-30777?
To fix CVE-2025-30777, ensure that access control levels are properly configured in PalsCode Support Genix to prevent unauthorized access.
What versions of Support Genix are affected by CVE-2025-30777?
CVE-2025-30777 affects PalsCode Support Genix versions up to and including 1.4.11.
Can CVE-2025-30777 be exploited remotely?
Yes, CVE-2025-30777 can be exploited remotely if access control configurations are misconfigured.
What impacts does CVE-2025-30777 have on my system?
Exploitation of CVE-2025-30777 can lead to unauthorized access, compromising sensitive data and potentially allowing further attacks.