CVE-2025-46245

CVSS 3.1 Score 8.8 of 10 (high)

Details

Published Apr 22, 2025
Updated: Apr 29, 2025
CWE ID 352

Summary

CVE-2025-46245 is a Cross-Site Request Forgery (CSRF) vulnerability affecting CreativeMindsSolutions' CM Ad Changer. This issue permits attackers to manipulate users' actions on affected websites, by making unintended modifications or taking control of their sessions. The flaw exists in CM Ad Changer versions from n/a through 2.0.5, leaving potentially numerous installations at risk. Successful exploitation could lead to unauthorized changes, adding a significant security concern for users and administrators alike. Upgrading to a patched version is strongly advised to mitigate this issue.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share