Input validation vulnerability in WPLMS Learning Management System for WordPress, WordPress LMS 1.9.9.5.2

The WPLMS plugin for WordPress has a security flaw that allows attackers to upload any type of file to a website using this plugin. This can be done by anyone with instructor-level or higher access to the website. This vulnerability exists in all versions of the plugin up to version 1.9.9.5.2. This could potentially lead to attackers being able to run code on the website’s server.

Detected in:

WPLMS Learning Management System for WordPress, WordPress LMS fixed vulnerable versions: >= * < 1.9.9.5.2

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.