Record summary

CVE-2024-7786 has a selected CVSS score of 7.5 (high); EIP currently links 1 Nuclei template.

Description

The Sensei LMS WordPress plugin before 4.24.2 does not properly protect some its REST API routes, allowing unauthenticated attackers to leak email templates.

Description source: CVE List

Exploitation context

Known exploitation

VulnCheck KEV
Listed · Sep 4, 2024 · VulnCheck
Reported exploitation
Observed · VulnCheck

Available material

Nuclei templates
1

CISA SSVC decision

ExploitationPoC
AutomatableYes
Technical impactPartial

CISA Coordinator · SSVC 2.0.3 · Evaluated Sep 4, 2024 · Source: CVE List

Affected products and versions

2
ProductSourceVersion rangeStatus

Sensei LMS

Default status: unaffected

CVE ListBefore 4.24.2affected

Default status: unknown

CVE List, VulnCheckBefore 4.24.2affected

Nuclei templates

1
ProjectDiscoveryHIGHSensei LMS < 4.24.2 - Email Template LeakCVSS 7.5

The Sensei LMS WordPress plugin before 4.24.2 does not properly protect some its REST API routes, allowing unauthenticated attackers to leak email templates.

Impact

Unauthenticated attackers can access and leak email templates through unprotected REST API endpoints, potentially exposing sensitive information included in email communications and template configurations.

Remediation

Update Sensei LMS plugin to version 4.24.2 or later to address the REST API protection issue.

Authorss4e-io
Template tagscvecve2024wpscanwpwp-pluginwordpresssensei-lmsexposurevkevvuln
CVSS vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
FOFA: body="/wp-content/plugins/sensei-lms"

Source: ProjectDiscovery

References

2