Metrics
Affected Vendors & Products
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2025-3847 | Missing Authorization vulnerability in wpase.com Admin and Site Enhancements (ASE) allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Admin and Site Enhancements (ASE): from n/a through 7.6.2. |
Solution
Update the WordPress Admin and Site Enhancements (ASE) wordpress plugin to the latest available version (at least 7.6.3).
Workaround
No workaround given by the vendor.
Fri, 24 Jan 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Fri, 24 Jan 2025 17:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Missing Authorization vulnerability in wpase.com Admin and Site Enhancements (ASE) allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Admin and Site Enhancements (ASE): from n/a through 7.6.2. | |
| Title | WordPress Admin and Site Enhancements (ASE) Plugin <= 7.6.2 - Broken Access Control vulnerability | |
| Weaknesses | CWE-862 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: Patchstack
Published:
Updated: 2025-01-24T18:57:26.728Z
Reserved: 2025-01-23T14:51:41.777Z
Link: CVE-2025-24649
Updated: 2025-01-24T18:46:28.168Z
Status : Received
Published: 2025-01-24T18:15:39.167
Modified: 2025-01-24T18:15:39.167
Link: CVE-2025-24649
No data.
OpenCVE Enrichment
No data.
EUVD