CVE-2025-3418: WPC Admin Columns 2.0.6 - 2.1.0 - Authenticated (Subscriber+) Privilege Escalation via User Meta Update
The WPC Admin Columns plugin for WordPress is vulnerable to privilege escalation in versions 2.0.6 to 2.1.0. This is due to the plugin not properly restricting user meta values that can be updated through the ajaxeditsave() function. This makes it possible for authenticated attackers, with Subscriber-level access and above, to update their role to that of an administrator.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-3418?
CVE-2025-3418 has a medium severity rating due to its potential for privilege escalation.
How do I fix CVE-2025-3418?
To fix CVE-2025-3418, update the WPC Admin Columns plugin to version 2.1.1 or later.
What versions of WPC Admin Columns are affected by CVE-2025-3418?
CVE-2025-3418 affects WPC Admin Columns versions 2.0.6 to 2.1.0.
Who can exploit CVE-2025-3418?
Authenticated users with sufficient permissions can exploit CVE-2025-3418 to escalate their privileges.
Is there a patch available for CVE-2025-3418?
Yes, a patch is available since WPC Admin Columns version 2.1.1.