CVE-2025-24736

CVSS 3.1 Score 4.3 of 10 (medium)

Details

Published Jan 24, 2025
CWE ID 862

Summary

CVE-2025-24736 is a security vulnerability affecting Metaphor Creations Post Duplicator, specifically versions from n/a to 2.35. This issue involves missing authorization, which enables unauthorized users to exploit incorrectly configured access control security levels. As a result, attackers can gain unauthorized access to Post Duplicator features and functionality, potentially leading to data manipulation, unauthorized data access, or further system compromise. System administrators are strongly advised to update to the latest version or implement appropriate access control measures to mitigate this risk.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share