Vulnerability that allows full admin takeover found in premium WordPress theme

zeeforce
3 Min Read




  • ‘Motors’ allowed threat actors to take over admin accounts
  • This enabled full website takeover
  • The developers released a fix

Motors, a premium theme for WordPress, was carrying a critical-severity vulnerability that allowed malicious actors to fully take over compromised websites.

The privilege escalation flaw, due to the theme improperly validating user identities before updating passwords, is now tracked as CVE-2025-4322, and has a severity score of 9.8/10 (critical).



Source link

Share This Article
Leave a comment
Optimized by Optimole
Verified by MonsterInsights