Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-22r7-2v6v-5qmw

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The tutor_mark_answer_as_correct AJAX action from the Tutor LMS – eLearning and online course solution WordPress plugin before 1.7.7 was vulnerable to blind and time based SQL injections that could be exploited by students.

The tutor_mark_answer_as_correct AJAX action from the Tutor LMS – eLearning and online course solution WordPress plugin before 1.7.7 was vulnerable to blind and time based SQL injections that could be exploited by students.

EPSS

Процентиль: 63%
0.00449
Низкий

Дефекты

CWE-89

Связанные уязвимости

CVSS3: 6.5
nvd
около 4 лет назад

The tutor_mark_answer_as_correct AJAX action from the Tutor LMS – eLearning and online course solution WordPress plugin before 1.7.7 was vulnerable to blind and time based SQL injections that could be exploited by students.

EPSS

Процентиль: 63%
0.00449
Низкий

Дефекты

CWE-89