01642 06 11 11 Arrange Call

Sensitive Information Exposure in eRoom – Zoom Meetings & Webinars WordPress Plugin

CVE-2024-3275 · MEDIUM

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N

CVE-2024-3275

The eRoom – Zoom Meetings & Webinars plugin for WordPress is vulnerable to Sensitive Information Exposure in all versions up to, and including, 1.4.18 via the search_posts function. This makes it possible for authenticated attackers, with subscriber access and higher, to obtain post excerpts including those of draft and pending posts.

Learn more about our Wordpress Pen Testing.