PT-2021-8848 · WordPress · Learndash Lms

Jerome Bruandet

·

Published

2021-11-01

·

Updated

2021-11-03

·

CVE-2018-25019

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N
Name of the Vulnerable Software and Affected Versions LearnDash LMS WordPress plugin versions prior to 2.5.4
Description The issue concerns a lack of authorization and validation for file uploads in the learndash assignment process init() function. This could allow unauthenticated users to upload arbitrary files to the web server.
Recommendations For versions prior to 2.5.4, update to version 2.5.4 or later to resolve the issue. As a temporary workaround, consider disabling the learndash assignment process init() function until a patch is available. Restrict access to file upload functionality to minimize the risk of exploitation.

Exploit

Fix

Missing Authorization

Unrestricted File Upload

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2018-25019

Affected Products

Learndash Lms