S4E just found a high-severity finding from [ai] pa ssl inspection control
PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
CVE

CVE-2019-25213

7.5
CVSScritical
Exploitable remotely over the internet · no authentication required.
Description

The Advanced Access Manager plugin for WordPress is vulnerable to Unauthenticated Arbitrary File Read in versions up to, and including, 5.9.8.1 due to insufficient validation on the aam-media parameter. This allows unauthenticated attackers to read any file on the server, including sensitive files such as wp-config.php

Attack Vector
Network
Privileges Req.
None
User Interaction
None
advanced access manager – access governance for wordpressadvanced_access_manager
Updated Sep 28, 2026View on NVD →
S4E scanner

CVE history: advanced access manager – access governance for wordpress

Predict next CVE date with AI

Monitor this CVE on your assets

S4E maps published CVEs to scanners and forecasts the next disclosure window for your stack.

Create a free account →