S4E just found a high-severity finding from top 10 tcp port service scan
PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
high·Product Based Web Vulnerabilities·Updated Dec 4, 2025

CVE-2025-47445 Scanner

CVE-2025-47445 Scanner - Arbitrary File Download vulnerability in WordPress Eventin (Themewinter)

Est. Time~10 seconds
Scan TypeSingle Scan
Targetsdomain, subdomain, ipv4
CostFree
2.2k
Times Used
continuous scan runs
6k
Continuously Checked
assets under CS
0
Vulnerabilities Found
confirmed findings
References
CVECVE-2025-47445
7.5
CVSShigh
Exploitable remotely over the internet · no authentication required.

Relative Path Traversal vulnerability in Arraytics Eventin wp-event-solution allows Path Traversal.This issue affects Eventin: from n/a through <= 4.0.26.

Attack Vector
Network
Privileges Req.
None
User Interaction
None
Affected
Eventinby Arraytics
0
Updated Sep 9, 2026View on NVD →
Detail

The WordPress Eventin plugin by Themewinter is widely used by event organizers, professionals, and businesses to manage events effectively. It offers features such as booking management, ticketing, and calendar integration. Eventin is designed for seamless integration with WordPress, providing an easy-to-use interface to cater to various event management needs. This plugin is beneficial for users who need to handle multiple events simultaneously, offering robust functionalities to enhance event execution. Its flexibility and extensive feature set make it a popular choice among WordPress users seeking comprehensive event management solutions. Regular updates and active community support enhance the plugin's usability and security.

The Arbitrary File Download vulnerability in Eventin version 4.0.26 and earlier arises from improper path handling. This vulnerability allows remote attackers to download sensitive files from the server, such as configuration files or databases, by sending a specially crafted request. The attack exploits the path traversal flaw, bypassing normal access controls to access unauthorized files. It affects installations where the vulnerable plugin version is used without secure configuration. Because the attack vector requires no authentication or specific privileges, it poses a significant security risk. Successfully exploiting this vulnerability can lead to severe consequences, including data leakage and unauthorized access.

In the vulnerability details, it is observed that the endpoint `/wp-admin/admin-ajax.php?action=proxy_image&url={{path}}` is targeted. Attackers manipulate the `url` parameter to traverse directories and access critical files like `/etc/passwd`, compromising system integrity. The vulnerability depends on the functionality of directory traversal, where relative paths are not correctly sanitized. This oversight allows malicious actors to explore beyond intended directories. The plugin fails to validate the `url` parameter adequately, facilitating unauthorized access to arbitrary files. Proposed payloads can lead to the extraction of sensitive information, hence an urgent need to address this vulnerability.

Exploiting the vulnerability allows attackers access to files they shouldn't have access to, which can lead to grave security breaches. Attackers might extract system files, revealing user credentials or other confidential information. This could result in information disclosure, identity theft, or even further attacks on the system if configuration files are exposed. Additionally, it could allow attackers to gain deeper access to the server, potentially compromising system integrity and availability. The risks underscore the vulnerability's potential for significant damage to the affected systems.

REFERENCES

Solution Advice
  • Update to the latest version of the Eventin plugin, at least version 4.0.27 or later.
  • Regularly audit and monitor your WordPress plugins for vulnerabilities and updates.
  • Restrict file permissions on the server to limit unauthorized access.
  • Implement firewalls or web application firewalls (WAF) to detect and block malicious requests.
  • Back up critical data frequently and ensure backups are stored securely.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.

CVE-2025-47445 Scanner - Arbitrary File Download vulnerability in WordPress Eventin (Themewinter) | S4E