CVE-2024-1289
MEDIUMLearnPress - WordPress LMS Plugin <4.2.6.3 - Info Disclosure
Title source: llmDescription
The LearnPress – WordPress LMS Plugin plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 4.2.6.3 due to missing validation on a user controlled key when looking up order information. This makes it possible for authenticated attackers to obtain information on orders placed by other users and guests, which can be leveraged to sign up for paid courses that were purchased by guests. Emails of other users are also exposed.
References (2)
Core 2
Core References
Scores
CVSS v3
6.5
EPSS
0.0025
EPSS Percentile
47.9%
Attack Vector
NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
CISA SSVC
Vulnrichment
Exploitation
none
Automatable
no
Technical Impact
partial
Details
CWE
CWE-285
CWE-639
Status
published
Products (2)
thimpress/learnpress
< 4.2.6.4
thimpress/LearnPress – WordPress LMS Plugin for Create and Sell Online Courses
< 4.2.6.3
Published
Apr 09, 2024
Tracked Since
Feb 18, 2026