vendor:
LifterLMS
by:
Captain_hook
5.4
CVSS
MEDIUM
Stored Cross-Site Scripting (XSS)
79
CWE
Product Name: LifterLMS
Affected Version From: LifterLMS < 4.21.0
Affected Version To: LifterLMS < 4.21.1
Patch Exists: YES
Related CWE: CVE-2021-24308
CPE: a:lifterlms:lifterlms
Metasploit:
N/A
Other Scripts:
N/A
Platforms Tested: ANY
2021
WordPress Plugin LifterLMS 4.21.0 – Stored Cross-Site Scripting (XSS)
The 'State' field of the Edit profile page of the LMS by LifterLMS – Online Course, Membership & Learning Management System Plugin for WordPress plugin before 4.21.1 is not properly sanitised when output in the About section of the profile page, leading to a stored Cross-Site Scripting issue. This could allow low privilege users (such as students) to elevate their privilege via an XSS attack when an admin will view their profile.
Mitigation:
Upgrade to LifterLMS version 4.21.1 or later.