CVE-2025-39482: WordPress Eventer plugin < 3.11.4 - Broken Access Control vulnerability
Missing Authorization vulnerability in imithemes Eventer eventer allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Eventer: from n/a through < 3.11.4.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is the severity of CVE-2025-39482?
CVE-2025-39482 is classified as a critical severity vulnerability due to its impact on access control.
How do I fix CVE-2025-39482?
To fix CVE-2025-39482, upgrade Imithemes Eventer or WordPress Eventer to version 3.9.7 or later.
Who is impacted by CVE-2025-39482?
Users of Imithemes Eventer and WordPress Eventer versions up to 3.9.6 are impacted by CVE-2025-39482.
What is the nature of CVE-2025-39482?
CVE-2025-39482 is a missing authorization vulnerability that allows exploitation of incorrectly configured access control settings.
Can CVE-2025-39482 lead to unauthorized access?
Yes, CVE-2025-39482 can lead to unauthorized access, potentially allowing attackers to exploit features without proper permission.