CVE-2025-32275: WordPress Survey Maker plugin <= 5.1.6.3 - Bypass vulnerability
Published Apr 10, 2025
·Updated
Authentication Bypass by Spoofing vulnerability in Ays Pro Survey Maker survey-maker allows Identity Spoofing.This issue affects Survey Maker: from n/a through <= 5.1.6.3.
Affected Software
3 affected components
Ays Pro Survey Maker>=5.1.5.4
WordPress Survey Maker<=5.1.5.4
ays-pro Survey Maker Wordpress<=5.1.5.4
Event History
Apr 10, 2025
CVE Published
via MITRE·08:09 AM
Data Sourced
via MITRE·08:09 AM
DescriptionWeakness
Data Sourced
via NVD·08:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2025-32275?
The severity of CVE-2025-32275 is classified as high due to its potential for authentication bypass and identity spoofing.
2
How do I fix CVE-2025-32275?
To fix CVE-2025-32275, update Ays Pro Survey Maker to a version newer than 5.1.5.4.
3
What versions of Survey Maker are affected by CVE-2025-32275?
CVE-2025-32275 affects all versions of Ays Pro Survey Maker from the initial release up to and including 5.1.5.4.
4
What type of vulnerability is CVE-2025-32275?
CVE-2025-32275 is an authentication bypass vulnerability that allows for identity spoofing.
5
Is CVE-2025-32275 specific to Ays Pro Survey Maker?
Yes, CVE-2025-32275 specifically affects Ays Pro Survey Maker as well as the WordPress version of the plugin.