Record summary

CVE-2024-9161 has a selected CVSS score of 6.5 (medium); EIP currently links 1 Nuclei template.

Description

The Rank Math SEO – AI SEO Tools to Dominate SEO Rankings plugin for WordPress is vulnerable to unauthorized modification and loss of data due to a missing capability check on the 'update_metadata' function in all versions up to, and including, 1.0.228. This makes it possible for unauthenticated attackers to insert new and update existing metadata beginning with 'rank_math', and delete arbitrary existing user metadata and term metadata. Deleting existing usermeta can cause a loss of access to the administrator dashboard for any registered users, including Administrators.

Description source: CVE List

Exploitation context

Known exploitation

VulnCheck KEV
Listed · Oct 25, 2024 · VulnCheck
Reported exploitation
Observed · VulnCheck

Available material

Nuclei templates
1

CISA SSVC decision

ExploitationNone
AutomatableNo
Technical impactPartial

CISA Coordinator · SSVC 2.0.3 · Evaluated Oct 7, 2024 · Source: CVE List

Affected products and versions

2
ProductSourceVersion rangeStatus

AI SEO Tools to Dominate SEO Rankings Plugin for WordPress

Browse Rank Math / AI SEO Tools to Dominate SEO Rankings Plugin for WordPress
VulnCheckVersion data not supplied

Rank Math SEO – AI SEO Tools to Dominate SEO Rankings

Browse rankmath / Rank Math SEO – AI SEO Tools to Dominate SEO Rankings

Default status: unaffected

CVE ListThrough 1.0.228affected

Nuclei templates

1
ProjectDiscoveryMEDIUMRank Math SEO < 1.0.229 - Unauthenticated User and Term Metadata Insert/Update/DeletionCVSS 6.5

Rank Math SEO – AI SEO Tools to Dominate SEO Rankings plugin for WordPress contains a missing capability check on 'update_metadata' in all versions up to 1.0.228, letting unauthenticated attackers insert, update, or delete metadata, including user and term metadata, potentially causing loss of access to the admin dashboard.

Impact

Unauthenticated attackers can modify or delete metadata, leading to data loss and potential denial of access to the admin dashboard.

Remediation

Update to version 1.0.229 or later.

WeaknessesCWE-862
AuthorsKazgangap
Template tagscvecve2024wordpressseo-by-rank-mathwp-pluginwpscanrankmathintrusivevkev
CVSS vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:L
CPE: cpe:2.3:a:rankmath:seo:*:*:*:*:free:wordpress:*:*
Shodan: http.html:"/wp-content/plugins/seo-by-rank-math/"
FOFA: body="/wp-content/plugins/seo-by-rank-math/"

Source: ProjectDiscovery

References

4