Exploit Details
Basic Information
| Exploit Title | Exploit for CVE-2025-4606 |
|---|---|
| Exploit ID | 038B30D5-6B35-5A8D-B159-36CBF2837602 |
| Type | githubexploit |
| Published | 2025-08-02T19:14:09 |
| Modified | 2025-08-02T19:21:35 |
CVSS Information
| CVSS Score | 9.8 |
|---|---|
| Severity | CRITICAL |
| Vector | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H |
AI Analysis
| AI Description | A critical vulnerability in the Sala WordPress theme allows unauthenticated attackers to escalate privileges via password reset/account takeover, affecting versions <=1.1.4. |
|---|---|
| AI Severity | Critical |
| AI Vendor | WordPress Community |
| AI Product | Sala Theme |
| AI Version | 1.0.0, 1.1.4 |
CVE Information
- CVE-2025-4606
Exploit Description
CVE-2025-4606 – WordPress Sala Theme <= 1.1.4 - Unauthenticated Privilege Escalation via Password Reset/Account Takeover