cleantalk
Vulnerabilities and Security Researches

MasterStudy LMS WordPress Plugin – for Online Courses and Education, CVE-2023-4278

CVE, Research URL

CVE-2023-4278

Published on
Sep 12, 2023
Research Description
The MasterStudy LMS WordPress Plugin WordPress plugin before 3.0.18 does not have proper checks in place during registration allowing anyone to register on the site as an instructor. They can then add courses and/or posts.
Affected versions
Min -, max 3.0.18.
Status
vulnerable