CVE-2024-2340
Avada <= 7.11.6 - Unauthenticated Sensitive Information Exposure via Form Uploads Directory Listing
Record summary
CVE-2024-2340 has a selected CVSS score of 5.3 (medium); EIP currently links 1 Nuclei template.
Description
The Avada theme for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 7.11.6 via the '/wp-content/uploads/fusion-forms/' directory. This makes it possible for unauthenticated attackers to extract sensitive data uploaded via an Avada created form with a file upload mechanism.
Exploitation context
Available material
- Nuclei templates
- 1
CISA SSVC decision
CISA Coordinator · SSVC 2.0.3 · Evaluated Aug 8, 2024 · Source: CVE List
Affected products and versions
2| Product | Source | Version range | Status |
|---|---|---|---|
Avada | Website Builder For WordPress & WooCommerceBrowse ThemeFusion / Avada | Website Builder For WordPress & WooCommerceDefault status: unaffected | CVE List | Through 7.11.6 | affected |
Default status: unknown | CVE List | Before 7.11.7 | affected |
Nuclei templates
1ProjectDiscoveryMEDIUMAvada < 7.11.7 - Information DisclosureCVSS 5.3
The Avada theme for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 7.11.6 via the '/wp-content/uploads/fusion-forms/' directory. This makes it possible for unauthenticated attackers to extract sensitive data uploaded via an Avada created form with a file upload mechanism.
Impact
Unauthenticated attackers can access sensitive files uploaded via Avada forms by browsing the fusion-forms directory, potentially exposing personal information or confidential data.
Remediation
Update Avada theme to version 7.11.7 or later.
Source: ProjectDiscovery