CVE-2025-32227: WordPress Asgaros Forum plugin <= 3.0.0 - File Upload Numbers Bypass vulnerability
Published Apr 10, 2025
·Updated
Authentication Bypass by Spoofing vulnerability in Asgaros Asgaros Forum asgaros-forum allows Identity Spoofing.This issue affects Asgaros Forum: from n/a through <= 3.0.0.
Affected Software
1 affected component
Asgaros Asgaros Forum<=3.0.0
Event History
Apr 10, 2025
CVE Published
via MITRE·08:09 AM
Data Sourced
via MITRE·08:09 AM
DescriptionWeakness
Data Sourced
via NVD·08:15 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2025-32227?
CVE-2025-32227 is classified as a medium severity vulnerability due to its potential for identity spoofing.
2
What does CVE-2025-32227 affect?
CVE-2025-32227 affects Asgaros Forum versions up to 3.0.0 by allowing authentication bypass.
3
How do I fix CVE-2025-32227?
To mitigate CVE-2025-32227, update Asgaros Forum to the latest version beyond 3.0.0.
4
What is the impact of CVE-2025-32227?
CVE-2025-32227 can lead to unauthorized access where attackers can impersonate other users.
5
Is CVE-2025-32227 actively being exploited?
Current information does not indicate active exploitation of CVE-2025-32227, but it should be addressed promptly.