Access Control Vulnerability in CM Pop-Up Banners by CreativeMindsSolutions
CVE-2025-54018
4.3MEDIUM
What is CVE-2025-54018?
A missing authorization vulnerability in the CM Pop-Up Banners plugin from CreativeMindsSolutions allows unauthorized users to exploit incorrectly configured access control security levels. This weakness affects versions from n/a through 1.8.4, potentially exposing sensitive functions and data to unauthorized access. Businesses using this plugin must assess their security configurations to prevent exploitation.
Affected Version(s)
CM Pop-Up banners <= 1.8.4