CVE-2024-1209

MEDIUM NUCLEI

LearnDash LMS <4.10.1 - Info Disclosure

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2024-1209. PoCs published by karlemilnikka. A Nuclei detection template is also available.

AI-analyzed exploit summary This repository provides a detailed technical analysis of CVE-2024-1209, an information exposure vulnerability in LearnDash LMS. It explains how unauthenticated users can access uploaded assignments via the REST API and includes patch details and timeline.

Description

The LearnDash LMS plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 4.10.1 via direct file access due to insufficient protection of uploaded assignments. This makes it possible for unauthenticated attackers to obtain those uploads.

Exploits (1)

nomisec WRITEUP 2 stars
by karlemilnikka · poc
https://github.com/karlemilnikka/CVE-2024-1209

This repository provides a detailed technical analysis of CVE-2024-1209, an information exposure vulnerability in LearnDash LMS. It explains how unauthenticated users can access uploaded assignments via the REST API and includes patch details and timeline.

Classification
Writeup 100%
Attack Type
Info Leak
Complexity
Trivial
Reliability
Reliable
Target: LearnDash LMS (sfwd-lms) <= 4.10.1
No auth needed
Prerequisites: Access to the target WordPress site with LearnDash LMS installed
devstral-2 · analyzed Feb 18, 2026 Full analysis →

Nuclei Templates (1)

LearnDash LMS < 4.10.2 - Sensitive Information Exposure via assignments
MEDIUMVERIFIEDby ritikchaddha
Shodan: http.html:/wp-content/plugins/sfwd-lms
FOFA: body=/wp-content/plugins/sfwd-lms

Scores

CVSS v3 5.3
EPSS 0.0242
EPSS Percentile 82.0%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

CISA SSVC

Vulnrichment
Exploitation none
Automatable yes
Technical Impact partial

Details

CWE
CWE-200
Status published
Products (2)
learndash/learndash < 4.10.3
StellarWP/LearnDash LMS < 4.10.1
Published Feb 05, 2024
Tracked Since Feb 18, 2026