vendor:
WordPress LearnDash
by:
NinTechNet
9.8
CVSS
CRITICAL
Arbitrary File Upload
CWE
Product Name: WordPress LearnDash
Affected Version From: 2.5.2003
Affected Version To: 2.5.2003
Patch Exists: YES
Related CWE:
CPE:
Platforms Tested:
2018
WordPress LearnDash 2.5.3 Unauthenticated Arbitrary File Upload
This vulnerability allows unauthenticated users to upload arbitrary files to the WordPress LearnDash plugin. The plugin does not check if the user is authenticated or allowed to upload files, resulting in unauthorized file uploads.
Mitigation:
Update to the latest version of the WordPress LearnDash plugin (2.5.4 or higher) which includes a fix for this vulnerability. Additionally, restrict access to the upload functionality for unauthenticated users.