CVE-2023-34020
WordPress Uncanny Toolkit for LearnDash plugin <= 3.6.4.3 - Open Redirection vulnerability
Record summary
CVE-2023-34020 has a selected CVSS score of 4.7 (medium); EIP currently links 1 Nuclei template.
Description
URL Redirection to Untrusted Site ('Open Redirect') vulnerability in Uncanny Owl Uncanny Toolkit for LearnDash.This issue affects Uncanny Toolkit for LearnDash: from n/a through 3.6.4.3.
Exploitation context
Available material
- Nuclei templates
- 1
CISA SSVC decision
CISA Coordinator · SSVC 2.0.3 · Evaluated Mar 28, 2024 · Source: CVE List
Affected products and versions
1| Product | Source | Version range | Status |
|---|---|---|---|
Uncanny Toolkit for LearnDashBrowse Uncanny Owl / Uncanny Toolkit for LearnDashuncanny-learndash-toolkitDefault status: unaffected | CVE List | Through 3.6.4.3 | affected |
Nuclei templates
1ProjectDiscoveryMEDIUMUncanny Toolkit for LearnDash - Open RedirectionCVSS 4.7
A vulnerability in the WordPress Uncanny Toolkit for LearnDash Plugin allowed malicious actors to redirect users, posing a potential risk of phishing incidents. The issue has been resolved in version 3.6.4.4, and users are urged to update for security.
Impact
Unauthenticated attackers can craft malicious redirect URLs through the REST API to redirect LearnDash users to phishing sites, potentially stealing login credentials and compromising user accounts.
Remediation
Update Uncanny Toolkit for LearnDash plugin to version 3.6.4.4 or later that validates redirect URLs and prevents open redirect attacks in the REST API.
Source: ProjectDiscovery