Custom Admin Manager (CAM) Security & Risk Analysis

wordpress.org/plugins/custom-admin-manager

Customize your WordPress admin panel with color themes, custom menus, custom dashboards, login page redesign, and Google Analytics integration.

0 active installs v1.0 PHP 7.4+ WP 5.0+ Updated Feb 20, 2025
admin-coloradmin-customizationadmin-dashboardcustom-logingoogle-analytics
92
A · Safe
CVEs total0
Unpatched0
Last CVENever
Download
Safety Verdict

Is Custom Admin Manager (CAM) Safe to Use in 2026?

Generally Safe

Score 92/100

Custom Admin Manager (CAM) has no known CVEs and is actively maintained. It's a solid choice for most WordPress installations.

No known CVEs Updated 1yr ago
Risk Assessment

The 'custom-admin-manager' v1.0 plugin exhibits a generally strong security posture based on the provided static analysis. The absence of direct SQL injection vulnerabilities due to the consistent use of prepared statements, a high percentage of properly escaped output, and no identified critical or high severity taint flows are significant strengths. Furthermore, the plugin demonstrates good practice by implementing nonce and capability checks on its AJAX handlers, which are its primary entry points, and has no documented vulnerability history, suggesting a well-maintained codebase. However, a potential area of concern is the presence of 7 external HTTP requests, which, if not handled carefully (e.g., validating user input before sending requests), could introduce risks like SSRF. While not explicitly flagged, the absence of any REST API routes or shortcodes means the plugin relies solely on AJAX for its functionality, which could be a limitation if it leads to overly complex AJAX logic needing meticulous review.

Key Concerns

  • External HTTP requests (7)
Vulnerabilities
None known

Custom Admin Manager (CAM) Security Vulnerabilities

No known vulnerabilities — this is a good sign.
Version History

Custom Admin Manager (CAM) Release Timeline

v1.0Current
Code Analysis
Analyzed Mar 17, 2026

Custom Admin Manager (CAM) Code Analysis

Dangerous Functions
0
Raw SQL Queries
0
0 prepared
Unescaped Output
6
173 escaped
Nonce Checks
11
Capability Checks
5
File Operations
0
External Requests
7
Bundled Libraries
0

Output Escaping

97% escaped179 total outputs
Data Flows · Security
All sanitized

Data Flow Analysis

10 flows
camwp_save_login_template (library\camCustomAdminLogin.php:342)
Source (user input) Sink (dangerous op) Sanitizer Transform Unsanitized Sanitized
Attack Surface

Custom Admin Manager (CAM) Attack Surface

Entry Points8
Unprotected0

AJAX Handlers 8

authwp_ajax_camwp_reset_to_default_settingscustom-admin-manager.php:67
authwp_ajax_save_admin_menu_settingslibrary\camAdminMenu.php:11
authwp_ajax_camwp_save_login_templatelibrary\camCustomAdminLogin.php:98
authwp_ajax_load_template_optionlibrary\camCustomAdminLogin.php:99
authwp_ajax_camwp_save_dashboard_settingslibrary\camDashboardSettings.php:22
authwp_ajax_camwp_save_general_settginslibrary\camGeneralSettings.php:11
authwp_ajax_camwp_save_ga_settinglibrary\camGoogleAnalytics.php:29
authwp_ajax_camwp_save_topbar_settingslibrary\camTopBarSettings.php:14
WordPress Hooks 39
actionadmin_menucustom-admin-manager.php:62
actionadmin_enqueue_scriptscustom-admin-manager.php:65
actionadmin_menulibrary\camAdminMenu.php:10
actionadmin_initlibrary\camAdminMenu.php:12
actionlogin_enqueue_scriptslibrary\camCustomAdminLogin.php:17
filtergettextlibrary\camCustomAdminLogin.php:21
filterlogin_body_classlibrary\camCustomAdminLogin.php:31
filterlogin_headerurllibrary\camCustomAdminLogin.php:36
actionlogin_headerlibrary\camCustomAdminLogin.php:40
filterlogin_body_classlibrary\camCustomAdminLogin.php:45
actionlogin_headerlibrary\camCustomAdminLogin.php:50
actionlogin_formlibrary\camCustomAdminLogin.php:51
actionlogin_footerlibrary\camCustomAdminLogin.php:52
filterlogin_body_classlibrary\camCustomAdminLogin.php:57
actionlogin_headerlibrary\camCustomAdminLogin.php:61
actionlogin_formlibrary\camCustomAdminLogin.php:62
actionlogin_footerlibrary\camCustomAdminLogin.php:63
filterlogin_messageslibrary\camCustomAdminLogin.php:66
actionlogin_initlibrary\camCustomAdminLogin.php:83
actionshutdownlibrary\camCustomAdminLogin.php:90
actionplugins_loadedlibrary\camCustomAdminLogin.php:109
actionwp_loadedlibrary\camCustomAdminLogin.php:110
filtersite_urllibrary\camCustomAdminLogin.php:111
actionadmin_bar_menulibrary\camDashboardSettings.php:18
actionadmin_bar_menulibrary\camDashboardSettings.php:19
actionwp_dashboard_setuplibrary\camDashboardSettings.php:23
actionadmin_initlibrary\camDashboardSettings.php:27
actionload-toplevel_page_camlibrary\camDashboardSettings.php:29
filteradmin-initlibrary\camDashboardSettings.php:43
filterscreen_options_show_screenlibrary\camDashboardSettings.php:277
actionwelcome_panellibrary\camDashboardSettings.php:283
actionadmin_bar_menulibrary\camGeneralSettings.php:8
actionadmin_headlibrary\camGeneralSettings.php:14
actionadmin_bar_menulibrary\camTopBarSettings.php:10
actionadmin_bar_menulibrary\camTopBarSettings.php:11
actionadmin_bar_menulibrary\camTopBarSettings.php:12
actionadmin_bar_menulibrary\camTopBarSettings.php:13
actionadmin_bar_menulibrary\camTopBarSettings.php:15
actionadmin_enqueue_scriptslibrary\camTopBarSettings.php:17
Maintenance & Trust

Custom Admin Manager (CAM) Maintenance & Trust

Maintenance Signals

WordPress version tested6.7.5
Last updatedFeb 20, 2025
PHP min version7.4
Downloads379

Community Trust

Rating0/100
Number of ratings0
Active installs0
Developer Profile

Custom Admin Manager (CAM) Developer Profile

Md Tanvir Ahamed Ron

1 plugin · 0 total installs

88
trust score
Avg Security Score
92/100
Avg Patch Time
30 days
View full developer profile
Detection Fingerprints

How We Detect Custom Admin Manager (CAM)

Patterns used to identify this plugin on WordPress sites during automated security audits and web crawling.

Asset Fingerprints

Asset Paths
/wp-content/plugins/custom-admin-manager/assets/css/styles.css/wp-content/plugins/custom-admin-manager/assets/js/scripts.js/wp-content/plugins/custom-admin-manager/assets/js/chart.js/wp-content/plugins/custom-admin-manager/assets/js/realtime-data.js
Script Paths
/wp-content/plugins/custom-admin-manager/assets/js/scripts.js/wp-content/plugins/custom-admin-manager/assets/js/chart.js/wp-content/plugins/custom-admin-manager/assets/js/realtime-data.js
Version Parameters
custom-admin-manager/assets/css/styles.css?ver=custom-admin-manager/assets/js/scripts.js?ver=custom-admin-manager/assets/js/realtime-data.js?ver=

HTML / DOM Fingerprints

CSS Classes
camwp_admin_customizationnav-tabnav-tab-activetab-contentcustom-menu
Data Attributes
data-tab
JS Globals
camSettingsAjax
REST Endpoints
/wp-json/camwp/v1/settings
FAQ

Frequently Asked Questions about Custom Admin Manager (CAM)