CVE-2025-31848

Missing Authorization vulnerability in WPFactory Adverts adverts-click-tracker allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Adverts: from n/a through <= 1.4.
Configurations

No configuration.

History

23 Apr 2026, 15:28

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.3

01 Apr 2026, 17:21

Type Values Removed Values Added
Summary
  • (es) La vulnerabilidad de falta de autorización en WPFactory WordPress Adverts Plugin permite explotar niveles de seguridad de control de acceso configurados incorrectamente. Este problema afecta al plugin de anuncios de WordPress desde la versión n/d hasta la 1.4.
Summary (en) Missing Authorization vulnerability in WPFactory WordPress Adverts Plugin allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects WordPress Adverts Plugin: from n/a through 1.4. (en) Missing Authorization vulnerability in WPFactory Adverts adverts-click-tracker allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Adverts: from n/a through <= 1.4.
CVSS v2 : unknown
v3 : 5.3
v2 : unknown
v3 : unknown
References
  • {'url': 'https://patchstack.com/database/wordpress/plugin/adverts-click-tracker/vulnerability/wordpress-wordpress-adverts-plugin-plugin-1-4-broken-access-control-vulnerability?_s_id=cve', 'source': 'audit@patchstack.com'}
  • () https://patchstack.com/database/Wordpress/Plugin/adverts-click-tracker/vulnerability/wordpress-wordpress-adverts-plugin-plugin-1-4-broken-access-control-vulnerability?_s_id=cve -

01 Apr 2025, 15:16

Type Values Removed Values Added
New CVE

Information

Published : 2025-04-01 15:16

Updated : 2026-04-23 15:28


NVD link : CVE-2025-31848

Mitre link : CVE-2025-31848

CVE.ORG link : CVE-2025-31848


JSON object : View

Products Affected

No product.

CWE
CWE-862

Missing Authorization