CVE-2024-1380
MEDIUM NUCLEIRelevanssi < 4.22.1 and Relevanssi Premium < 2.25.0 - Unauthenticated Query Log Data Export
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2024-1380. PoCs published by RandomRobbieBF. A Nuclei detection template is also available.
AI-analyzed exploit summary This repository contains a functional proof-of-concept for CVE-2024-1380, demonstrating an unauthorized data access vulnerability in the Relevanssi WordPress plugin. The PoC includes a crafted HTTP request that exploits a missing capability check to export query log data without authentication.
Description
The Relevanssi – A Better Search plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the relevanssi_export_log_check() function in all versions up to, and including, 4.22.0 (Free) and 2.25.0 (Premium). This makes it possible for unauthenticated attackers to export the query log data. The vendor has indicated that they may look into adding a capability check for proper authorization control, however, this vulnerability is theoretically patched as is.
Exploits (1)
This repository contains a functional proof-of-concept for CVE-2024-1380, demonstrating an unauthorized data access vulnerability in the Relevanssi WordPress plugin. The PoC includes a crafted HTTP request that exploits a missing capability check to export query log data without authentication.
Nuclei Templates (1)
/wp-content/plugins/relevanssi/
References (2)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N