WP SmartPay <= 2.7.13 - Authenticated (Subscriber+) Account Takeover
high
The Download Manager and Payment Form WordPress Plugin – WP SmartPay plugin for WordPress is vulnerable to privilege escalation via account takeover in versions 1.1.0 to 2.7.13. This is due to the plugin not properly validating a user's identity prior to updating their email through the update() function. This makes it...
- CVSS:
- 8.8
- Affected:
- up to 2.7.13
- Fixed in:
- 2.8.0
- Disclosed:
- Jun 24, 2025
CVE-2025-25171 on NVD →
Download Manager and Payment Form WordPress Plugin – WP SmartPay 1.1.0 - 2.7.13 - Authenticated (Subscriber+) Information Exposure
medium
The Download Manager and Payment Form WordPress Plugin – WP SmartPay plugin for WordPress is vulnerable to Insecure Direct Object Reference in versions 1.1.0 to 2.7.13 via the show() function due to missing validation on a user controlled key. This makes it possible for authenticated attackers, with Subscriber-level ac...
- CVSS:
- 4.3
- Affected:
- 1.1.0 – 2.7.13
- Fixed in:
- 2.8.0
- Disclosed:
- May 6, 2025
CVE-2025-3851 on NVD →
Protect your WordPress site
Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.
Scan your site free
← Back to the vulnerability database