Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%
Vulnerability List
Found 40 results
CVE IDTitleVendorProductSeverityCVSS ScorePublished AtAI Analysis
CVE-2024-4971 LearnPress – WordPress LMS Plugin <= 4.2.6.6 - Authenticated (Contributor+) Stored Cross-Site Scripting via id Parameter thimpressLearnPress – WordPress LMS Plugin for Create and Sell Online Courses Medium 6.4 2024-05-22 05:32:47 Deep Dive
CVE-2024-4277 LearnPress – WordPress LMS Plugin <= 4.2.6.5 - Authenticated (Contributor+) Stored Cross-Site Scripting via layout_html Parameter thimpressLearnPress – WordPress LMS Plugin for Create and Sell Online Courses Medium 6.4 2024-05-10 09:32:09 Deep Dive
CVE-2024-4444 LearnPress – WordPress LMS Plugin <= 4.2.6.5 - Unauthenticated Bypass to User Registration thimpressLearnPress – WordPress LMS Plugin for Create and Sell Online Courses Medium 5.3 2024-05-10 08:32:35 Deep Dive
CVE-2024-4434 LearnPress – WordPress LMS Plugin <= 4.2.6.5 - Unauthenticated Time-Based SQL Injection thimpressLearnPress – WordPress LMS Plugin for Create and Sell Online Courses Critical 9.8 2024-05-10 08:32:33 Deep Dive
CVE-2024-4397 LearnPress – WordPress LMS Plugin <= 4.2.6.5 - Authenticated (Instructor+) Arbitrary File Upload thimpressLearnPress – WordPress LMS Plugin for Create and Sell Online Courses High 8.8 2024-05-09 20:03:42 Deep Dive
CVE-2024-3560 LearnPress – WordPress LMS Plugin <= 4.2.6.4 - Authenticated (Contributor+) Stored Cross-Site Scripting thimpressLearnPress – WordPress LMS Plugin for Create and Sell Online Courses Medium 6.4 2024-04-19 01:57:09 Deep Dive
CVE-2024-1463 LearnPress <= 4.2.6.3 - Authenticated(LP Instructor+) Stored Cross-Site Scripting thimpressLearnPress – WordPress LMS Plugin for Create and Sell Online Courses Medium 4.4 2024-04-09 18:59:12 Deep Dive
CVE-2024-1289 LearnPress <= 4.2.6.3 - Insecure Direct Object Reference thimpressLearnPress – WordPress LMS Plugin for Create and Sell Online Courses Medium 6.5 2024-04-09 18:58:32 Deep Dive
CVE-2024-2115 LearnPress – WordPress LMS Plugin <= 4.0.0 - Cross-Site Request Forgery to Privilege Escalation thimpressLearnPress – WordPress LMS Plugin for Create and Sell Online Courses High 8.8 2024-04-05 07:34:36 Deep Dive
CVE-2023-6567 LearnPress <= 4.2.5.7 - Unauthenticated SQL Injection via order_by thimpressLearnPress – WordPress LMS Plugin for Create and Sell Online Courses Critical 9.8 2024-01-11 08:32:37 Deep Dive
CVE-2023-6634 LearnPress <= 4.2.5.7 - Command Injection thimpressLearnPress – WordPress LMS Plugin for Create and Sell Online Courses High 8.1 2024-01-11 08:32:29 Deep Dive
CVE-2023-6223 LearnPress <= 4.2.5.7 - Insecure Direct Object Reference to Information Disclosure thimpressLearnPress – WordPress LMS Plugin for Create and Sell Online Courses Medium 4.3 2024-01-11 06:49:32 Deep Dive
CVE-2022-45820 WordPress LearnPress Plugin <= 4.1.7.3.2 is vulnerable to SQL Injection ThimPressLearnPress – WordPress LMS Plugin Critical 9.1 2023-01-24 09:18:46 Deep Dive
CVE-2022-45808 WordPress LearnPress Plugin <= 4.1.7.3.2 is vulnerable to SQL Injection ThimPressLearnPress – WordPress LMS Plugin Critical 9.9 2023-01-24 09:13:43 Deep Dive
CVE-2022-47615 WordPress LearnPress Plugin <= 4.1.7.3.2 is vulnerable to Local File Inclusion ThimPressLearnPress – WordPress LMS Plugin Critical 9.3 2023-01-24 09:05:27 Deep Dive
CVE-2022-3360 LearnPress < 4.1.7.2 - Unauthenticated PHP Object Injection via REST API UnknownLearnPress – WordPress LMS Plugin 高危 -2022-10-31 00:00:00 Deep Dive
CVE-2022-0271 LearnPress < 4.1.6 - Reflected Cross-Site Scripting UnknownLearnPress – WordPress LMS Plugin 中危 -2022-04-11 14:40:41 Deep Dive
CVE-2021-24951 LearnPress < 4.1.4 - Admin+ SQL Injection UnknownLearnPress – WordPress LMS Plugin 超危 -2021-12-13 10:41:26 Deep Dive
CVE-2021-24702 LearnPress < 4.1.3.1 - Multiple Admin+ Stored Cross-Site Scripting UnknownLearnPress – WordPress LMS Plugin 中危 -2021-10-18 13:46:00 Deep Dive
CVE-2020-6010 Wordpress LearnPress SQL注入漏洞 -LearnPress Wordpress Plugin 高危 -2020-04-30 14:38:22 Deep Dive