Vulnerabilities > Thimpress
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2022-04-11 | CVE-2022-0271 | Cross-site Scripting vulnerability in Thimpress Learnpress The LearnPress WordPress plugin before 4.1.6 does not sanitise and escape the lp-dismiss-notice before outputting it back via the lp_background_single_email AJAX action, leading to a Reflected Cross-Site Scripting | 6.1 |
2022-02-28 | CVE-2022-0377 | Use of a Broken or Risky Cryptographic Algorithm vulnerability in Thimpress Learnpress Users of the LearnPress WordPress plugin before 4.1.5 can upload an image as a profile avatar after the registration. | 4.3 |
2021-12-13 | CVE-2021-24951 | SQL Injection vulnerability in Thimpress Learnpress The LearnPress WordPress plugin before 4.1.4 does not sanitise, validate and escape the id parameter before using it in SQL statements when duplicating course/lesson/quiz/question, leading to SQL Injections issues | 9.8 |
2021-10-21 | CVE-2021-39348 | Cross-site Scripting vulnerability in Thimpress Learnpress 4.0.4/4.0.5/4.0.6 The LearnPress WordPress plugin is vulnerable to Stored Cross-Site Scripting due to insufficient escaping on the $custom_profile parameter found in the ~/inc/admin/views/backend-user-profile.php file which allowed attackers with administrative user access to inject arbitrary web scripts, in versions up to and including 4.1.3.1. | 4.8 |
2021-10-18 | CVE-2021-24702 | Cross-site Scripting vulnerability in Thimpress Learnpress 4.0.4/4.0.5/4.0.6 The LearnPress WordPress plugin before 4.1.3.1 does not properly sanitize or escape various inputs within course settings, which could allow high privilege users to perform Cross-Site Scripting attacks when the unfiltred_html capability is disallowed | 4.8 |
2021-07-30 | CVE-2020-11511 | Missing Authorization vulnerability in Thimpress Learnpress The LearnPress plugin before 3.2.6.9 for WordPress allows remote attackers to escalate the privileges of any user to LP Instructor via the accept-to-be-teacher action parameter. | 8.1 |
2021-03-03 | CVE-2020-29047 | Deserialization of Untrusted Data vulnerability in Thimpress WP Hotel Booking The wp-hotel-booking plugin through 1.10.2 for WordPress allows remote attackers to execute arbitrary code because of an unserialize operation on the thimpress_hotel_booking_1 cookie in load in includes/class-wphb-sessions.php. | 9.8 |
2020-04-30 | CVE-2020-6010 | SQL Injection vulnerability in Thimpress Learnpress LearnPress Wordpress plugin version prior and including 3.2.6.7 is vulnerable to SQL Injection | 8.8 |
2020-03-16 | CVE-2020-7916 | Improper Privilege Management vulnerability in Thimpress Learnpress be_teacher in class-lp-admin-ajax.php in the LearnPress plugin 3.2.6.5 and earlier for WordPress allows any registered user to assign itself the teacher role via the wp-admin/admin-ajax.php?action=learnpress_be_teacher URI without any additional permission checks. | 6.5 |
2019-01-09 | CVE-2018-16175 | SQL Injection vulnerability in Thimpress Learnpress SQL injection vulnerability in the LearnPress prior to version 3.1.0 allows attacker with administrator rights to execute arbitrary SQL commands via unspecified vectors. | 7.2 |