Authentication vulnerability in Edwiser Bridge – WordPress Moodle LMS Integration 3.0.5

The Build App Online plugin for WordPress has a security issue that allows unauthorized access to user accounts. This is because of a default value being empty and a missing check in a specific function. This means that attackers without proper credentials could potentially log into any user account, even administrator accounts, if they know the user id. This vulnerability can only be exploited if the ‘Email Verification’ setting is turned on.

Detected in:

Edwiser Bridge – WordPress Moodle LMS Integration open vulnerable versions: >= * <= 3.0.5

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.