Beveiligingsadvies

CVE-2023-3345

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2023-07-31 09:37:36
Laatst bijgewerkt 2024-08-30 13:34:18
Toegewezen door WPScan
CVSS-score geen score
Status PUBLISHED

Beschrijving

The LMS by Masteriyo WordPress plugin before 1.6.8 does not have proper authorization in one some of its REST API endpoints, making it possible for any students to retrieve email addresses of other students