CVE-2022-2034
Sensei LMS < 4.5.0 - Unauthenticated Private Messages Disclosure via Rest API
Record summary
CVE-2022-2034 has a selected CVSS score of 5.3 (medium); EIP currently links 1 Nuclei template.
Description
The Sensei LMS WordPress plugin before 4.5.0 does not have proper permissions set in one of its REST endpoint, allowing unauthenticated users to access private messages sent to teachers
Exploitation context
Available material
- Nuclei templates
- 1
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
Sensei LMSDefault status: unaffected | CVE List | Before 4.5.0 | affected |
Nuclei templates
1ProjectDiscoveryMEDIUMWordPress Sensei LMS <4.5.0 - Information DisclosureCVSS 5.3
WordPress Sensei LMS plugin before 4.5.0 is susceptible to information disclosure. The plugin does not have proper permissions set in a REST endpoint, which can allow an attacker to access private messages.
Impact
Unauthenticated attackers can access private Sensei LMS messages via unprotected REST API endpoints, potentially exposing confidential student-teacher communications.
Remediation
Upgrade WordPress Sensei LMS to version 4.5.0 or later to mitigate this vulnerability.
Source: ProjectDiscovery