CVE-2025-62964
8.1RealMag777 · MDTF (wp-meta-data-filter-and-taxonomy-filter)
A missing authorization vulnerability in the RealMag777 MDTF WordPress plugin allows unauthenticated attackers to exploit incorrectly configured access controls.
Executive summary
A critical missing authorization flaw in the RealMag777 MDTF plugin allows unauthenticated attackers to manipulate access controls, posing a significant risk to site integrity.
Vulnerability
This vulnerability is categorized as CWE-862, Missing Authorization, which occurs because the plugin fails to perform adequate capability checks on sensitive functions. The CVSS vector indicates this is exploitable by an unauthenticated attacker over the network with no user interaction required.
Business impact
The vulnerability carries a CVSS score of 8.1, reflecting a high potential for unauthorized actions within the WordPress environment. Successful exploitation could allow attackers to bypass security restrictions, potentially leading to unauthorized data modification or the manipulation of filter taxonomies, which may disrupt site functionality and compromise the integrity of the user experience.
Remediation
Immediate Action: Update the RealMag777 MDTF plugin to the latest available version provided by the vendor to resolve the authorization bypass.
Proactive Monitoring: Review web server access logs for unusual requests targeting plugin-specific endpoints or patterns indicative of unauthorized access attempts.
Compensating Controls: Implement a Web Application Firewall (WAF) rule to block suspicious traffic patterns directed at the MDTF plugin until the patch can be verified and deployed.
Exploitation status
Public Exploit Available: No (exploit_available: unknown).
Analyst recommendation
Given the unauthenticated nature of this vulnerability and the potential for unauthorized access control manipulation, administrators must prioritize patching this plugin. Verify your current version of MDTF immediately and apply the vendor security update to ensure your site is protected against potential exploitation.
More RealMag777 CVEs
Sources
Originally found and disclosed by D01EXPLOIT | Patchstack Bug Bounty Program, per the CVE Program record.