CVE-2025-8047 Information
Aug 15, 2025
cve
Description
The disable-right-click-powered-by-pixterme through v1.2 and pixter-image-digital-license thtough v1.0 WordPress plugins load a JavaScript file which has been compromised from an apparent abandoned S3 bucket. It can be used as a backdoor by those who control it but it currently displays an alert marketing security services. Users that pay are added to allowedDomains to suppress the popup.
Reference
https://wpscan.com/vulnerability/a0c70b98-a3f9-4d4c-a25f-81424230b1a5/ https://wpscan.com/vulnerability/a0c70b98-a3f9-4d4c-a25f-81424230b1a5/
Related CNNVD
CNNVD-202508-1510 (Published: 2025-08-14)
Share on: