The eRoom – Zoom Meetings & Webinars plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.4.18 via the search_posts function. This makes it possible for authenticated attackers, with subscriber access and higher, to obtain post excerpts including those of draft and pending posts.
References
Configurations
No configuration.
History
No history.
Information
Published : 2024-05-02 17:15
Updated : 2026-06-17 07:43
NVD link : CVE-2024-3275
Mitre link : CVE-2024-3275
CVE.ORG link : CVE-2024-3275
JSON object : View
Products Affected
No product.
CWE
CWE-862
Missing Authorization
