CVE-2024-7786
Sensei LMS < 4.24.2 - Unauthenticated Email Template Leak
Record summary
CVE-2024-7786 has a selected CVSS score of 7.5 (high); EIP currently links 1 Nuclei template.
Description
The Sensei LMS WordPress plugin before 4.24.2 does not properly protect some its REST API routes, allowing unauthenticated attackers to leak email templates.
Exploitation context
Known exploitation
- VulnCheck KEV
- Listed · Sep 4, 2024 · VulnCheck
- Reported exploitation
- Observed · VulnCheck
Available material
- Nuclei templates
- 1
CISA SSVC decision
CISA Coordinator · SSVC 2.0.3 · Evaluated Sep 4, 2024 · Source: CVE List
Affected products and versions
2| Product | Source | Version range | Status |
|---|---|---|---|
Sensei LMSDefault status: unaffected | CVE List | Before 4.24.2 | affected |
sensei_lmsBrowse automattic / sensei_lmsDefault status: unknown | CVE List, VulnCheck | Before 4.24.2 | affected |
Nuclei templates
1ProjectDiscoveryHIGHSensei LMS < 4.24.2 - Email Template LeakCVSS 7.5
The Sensei LMS WordPress plugin before 4.24.2 does not properly protect some its REST API routes, allowing unauthenticated attackers to leak email templates.
Impact
Unauthenticated attackers can access and leak email templates through unprotected REST API endpoints, potentially exposing sensitive information included in email communications and template configurations.
Remediation
Update Sensei LMS plugin to version 4.24.2 or later to address the REST API protection issue.
Source: ProjectDiscovery