First published: Wed May 07 2025(Updated: )
Missing Authorization vulnerability in Saad Iqbal Advanced File Manager allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Advanced File Manager: from n/a through 5.3.1.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Saad Iqbal Advanced File Manager | >=n/a<=5.3.1 | |
WordPress Advanced File Manager | <=5.3.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2025-47688 has been rated with a high severity due to missing authorization allowing unauthorized access to sensitive features.
To fix CVE-2025-47688, you should update the Saad Iqbal Advanced File Manager to version 5.3.2 or newer, where the issue is addressed.
CVE-2025-47688 affects versions of Saad Iqbal Advanced File Manager from n/a up to 5.3.1.
Yes, CVE-2025-47688 can be exploited remotely due to misconfigured access controls that allow unauthorized file management access.
The impacts of CVE-2025-47688 include unauthorized file access and management, which can lead to data leakage or integrity breaches.