What the vulnerability does
01Description
Nonce token leak vulnerability leading to arbitrary file upload, theme deletion, plugin settings change discovered in Responsive Menu WordPress plugin (versions <= 4.1.7).
CVSS base score
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:L
What the vulnerability does
Nonce token leak vulnerability leading to arbitrary file upload, theme deletion, plugin settings change discovered in Responsive Menu WordPress plugin (versions <= 4.1.7).
Explanation of Vulnerability in Simple Terms
The Responsive Menu WordPress plugin through version 4.1.7 contains an information exposure vulnerability that allows authenticated users with low privileges to read sensitive data. The plugin fails to properly restrict access to certain functions, exposing configuration details and potentially other site information. An attacker with a basic user account can exploit this without user interaction.
What an attacker can do
Read sensitive plugin configuration and site data that should be restricted to administrators.
Potential impact on your site
Unauthorized users can access sensitive plugin settings and potentially other restricted information on your site.
Conditions required to exploit
Attacker needs a low-privilege WordPress user account (subscriber or contributor level).
Key dates
External resources
Related vulnerabilities