CVE-2022-47615

Local File Inclusion vulnerability in LearnPress – WordPress LMS Plugin <= 4.1.7.3.2 versions.
Configurations

Configuration 1 (hide)

cpe:2.3:a:thimpress:learnpress:*:*:*:*:*:wordpress:*:*

History

21 Nov 2024, 07:32

Type Values Removed Values Added
Summary
  • (es) Vulnerabilidad de inclusión de archivos locales (LFI) en LearnPress – WordPress LMS Plugin. Se ven afectadas la versión 4.1.7.3.2 y todas las anteriores.
References () https://patchstack.com/articles/multiple-critical-vulnerabilities-fixed-in-learnpress-plugin-version/ - Exploit, Patch, Third Party Advisory () https://patchstack.com/articles/multiple-critical-vulnerabilities-fixed-in-learnpress-plugin-version/ - Exploit, Patch, Third Party Advisory
References () https://patchstack.com/database/vulnerability/learnpress/wordpress-learnpress-plugin-4-1-7-3-2-local-file-inclusion?_s_id=cve - Third Party Advisory () https://patchstack.com/database/vulnerability/learnpress/wordpress-learnpress-plugin-4-1-7-3-2-local-file-inclusion?_s_id=cve - Third Party Advisory
CVSS v2 : unknown
v3 : 9.8
v2 : unknown
v3 : 9.3

07 Nov 2023, 03:56

Type Values Removed Values Added
Summary Local File Inclusion vulnerability in LearnPress – WordPress LMS Plugin <= 4.1.7.3.2 versions. Local File Inclusion vulnerability in LearnPress – WordPress LMS Plugin <= 4.1.7.3.2 versions.

Information

Published : 2023-01-26 21:18

Updated : 2024-11-21 07:32


NVD link : CVE-2022-47615

Mitre link : CVE-2022-47615

CVE.ORG link : CVE-2022-47615


JSON object : View

Products Affected

thimpress

  • learnpress
CWE
CWE-434

Unrestricted Upload of File with Dangerous Type