Логотип exploitDog
bind:CVE-2018-25019
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2018-25019

Количество 2

Количество 2

nvd логотип

CVE-2018-25019

больше 4 лет назад

The LearnDash LMS WordPress plugin before 2.5.4 does not have any authorisation and validation of the file to be uploaded in the learndash_assignment_process_init() function, which could allow unauthenticated users to upload arbitrary files to the web server

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-vvx7-4gw3-r3mv

больше 3 лет назад

The LearnDash LMS WordPress plugin before 2.5.4 does not have any authorisation and validation of the file to be uploaded in the learndash_assignment_process_init() function, which could allow unauthenticated users to upload arbitrary files to the web server

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2018-25019

The LearnDash LMS WordPress plugin before 2.5.4 does not have any authorisation and validation of the file to be uploaded in the learndash_assignment_process_init() function, which could allow unauthenticated users to upload arbitrary files to the web server

CVSS3: 7.5
0%
Низкий
больше 4 лет назад
github логотип
GHSA-vvx7-4gw3-r3mv

The LearnDash LMS WordPress plugin before 2.5.4 does not have any authorisation and validation of the file to be uploaded in the learndash_assignment_process_init() function, which could allow unauthenticated users to upload arbitrary files to the web server

0%
Низкий
больше 3 лет назад

Уязвимостей на страницу