Input validation vulnerability in WPLMS Learning Management System for WordPress, WordPress LMS 1.9.9.5.3

The WPLMS plugin for WordPress has a security issue that allows attackers to upload any type of file, which could potentially result in their ability to run code on the website. This vulnerability exists in all versions of the plugin up to 1.9.9.5.3, but not including it. This means that attackers who are logged in with at least Subscriber-level access can exploit this flaw and upload harmful files to the website’s server.

Detected in:

WPLMS Learning Management System for WordPress, WordPress LMS fixed vulnerable versions: >= * < 1.9.9.5.3

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.