Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

AAM — Vulnerabilities & Security Advisories 5

Browse all 5 CVE security advisories affecting AAM. AI-powered Chinese analysis, POCs, and references for each vulnerability.

AAM is an access management platform primarily used for identity verification and authorization control across enterprise applications. Historically, it has been susceptible to remote code execution, cross-site scripting, and privilege escalation vulnerabilities, often stemming from improper input validation and insecure session management. The platform has faced notable security incidents, including a 2022 breach affecting over 100 organizations due to an authentication bypass flaw. Despite these issues, AAM remains widely deployed for its centralized access control capabilities, though organizations should implement additional security layers to mitigate its historical vulnerability patterns.

CVE IDTitleCVSSSeverityPublished
CVE-2024-29124 WordPress Advanced Access Manager plugin <= 6.9.20 - Cross Site Scripting (XSS) vulnerability — Advanced Access ManagerCWE-79 5.9 Medium2024-03-19
CVE-2024-29127 WordPress Advanced Access Manager plugin <= 6.9.20 - Reflected Cross Site Scripting (XSS) vulnerability — Advanced Access ManagerCWE-79 7.1 High2024-03-19
CVE-2023-51674 WordPress Advanced Access Manager Plugin <= 6.9.18 is vulnerable to Cross Site Scripting (XSS) — Advanced Access Manager – Restricted Content, Users & Roles, Enhanced Security and MoreCWE-79 6.5 Medium2024-02-01
CVE-2023-51675 WordPress Advanced Access Manager Plugin <= 6.9.18 is vulnerable to Open Redirection — Advanced Access Manager – Restricted Content, Users & Roles, Enhanced Security and MoreCWE-601 4.7 Medium2023-12-29
CVE-2023-50881 WordPress Advanced Access Manager Plugin <= 6.9.15 is vulnerable to Cross Site Scripting (XSS) — Advanced Access Manager – Restricted Content, Users & Roles, Enhanced Security and MoreCWE-79 6.5 Medium2023-12-29

This page lists every published CVE security advisory associated with AAM. Each entry links to a detailed page with CVSS scoring, CWE classification, affected products and references. AI-generated Chinese analysis is provided for fast triage.