CVE-2025-5482: Sunshine Photo Cart <= 3.4.11 - Authenticated (Subscriber+) Privilege Escalation
The Sunshine Photo Cart: Free Client Photo Galleries for Photographers plugin for WordPress is vulnerable to privilege escalation via account takeover in all versions up to, and including, 3.4.11. This is due to the plugin not properly validating a user-supplied key. This makes it possible for authenticated attackers, with Subscriber-level access and above, to change arbitrary user's passwords through the password reset functionality, including administrators, and leverage that to reset the user's password and gain access to their account.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-5482?
CVE-2025-5482 has a severity rating that indicates a high risk of privilege escalation due to improper validation.
How do I fix CVE-2025-5482?
To fix CVE-2025-5482, update the Sunshine Photo Cart plugin to version 3.4.12 or later.
Who is affected by CVE-2025-5482?
All users of the Sunshine Photo Cart plugin for WordPress running versions up to and including 3.4.11 are affected by CVE-2025-5482.
What types of attacks does CVE-2025-5482 allow?
CVE-2025-5482 allows attackers to escalate their privileges through account takeover due to weak validation mechanisms.
Is there a workaround for CVE-2025-5482?
There are no recommended workarounds for CVE-2025-5482; updating the plugin is the best solution.