Record summary

CVE-2024-6845 has a selected CVSS score of 5.3 (medium); EIP currently links 1 Nuclei template.

Description

The Chatbot with ChatGPT WordPress plugin before 2.4.6 does not have proper authorization in one of its REST endpoint, allowing unauthenticated users to retrieve the encoded key and then decode it, thereby leaking the OpenAI API key

Description source: CVE List

Exploitation context

Available material

Nuclei templates
1

CISA SSVC decision

ExploitationPoC
AutomatableYes
Technical impactPartial

CISA Coordinator · SSVC 2.0.3 · Evaluated Sep 25, 2024 · Source: CVE List

Affected products and versions

2
ProductSourceVersion rangeStatus

Chatbot with ChatGPT WordPress

Default status: unaffected

CVE ListBefore 2.4.6affected

Default status: unknown

CVE ListBefore 2.4.6affected

Nuclei templates

1
ProjectDiscoveryMEDIUMSmartSearchWP < 2.4.6 - OpenAI Key DisclosureCVSS 5.3

The plugin does not have proper authorization in one of its REST endpoint, allowing unauthenticated users to retrieve the encoded key and then decode it, thereby leaking the OpenAI API key.

Impact

Unauthenticated attackers can retrieve and decode the OpenAI API key through an unsecured REST endpoint, potentially incurring API usage costs and data exposure.

Remediation

Update SmartSearchWP plugin to version 2.4.6 or later to address the API key disclosure vulnerability.

WeaknessesCWE-862
Authorss4e-io
Template tagscvecve2024exposurewpwordpresswp-pluginsmartsearchwpvuln
CVSS vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
FOFA: body="/wp-content/plugins/smartsearchwp"

Source: ProjectDiscovery

References

2