LearnDash LMS <= 2.5.3 - Arbitrary File Upload
2018-01-06 00:00
Jerome BruandetStrategic Overview
StatusPatched in 2.5.4
Affected PluginLearnDash LMS
Affected Version
< 2.5.4CVSS7.5High
CVE
CVE-2018-25019Vulnerability Overview
The LearnDash LMS WordPress plugin before 2.5.4 does not have any authorisation and validation of the file to be uploaded in the learndash_assignment_process_init() function, which could allow unauthenticated users to upload arbitrary files to the web server
Technical Analysis
REMEDIATION: Update to version 2.5.4, or a newer patched version --- IDENTIFIER: CWE-434 (Unrestricted Upload of File with Dangerous Type) The product allows the upload or transfer of dangerous file types that are automatically processed within its environment.
External References
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C