PT-2025-44374 · WordPress · Apppresser – Mobile App Framework

D01Exploit Official

·

Published

2025-10-30

·

Updated

2025-10-30

·

CVE-2025-11881

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions AppPresser – Mobile App Framework plugin for WordPress versions through 4.5.0
Description The AppPresser – Mobile App Framework plugin for WordPress is susceptible to unauthorized data access. A missing capability check within the myappp verify function allows unauthenticated attackers to extract sensitive information. This data includes plugin and theme names and version numbers, potentially enabling targeted attacks against vulnerable components.
Recommendations Update to a version beyond 4.5.0.

Fix

Missing Authorization

Weakness Enumeration

Related Identifiers

CVE-2025-11881

Affected Products

Apppresser – Mobile App Framework