Tutor LMS——一款 WordPress 电子学习与在线课程解决方案插件——在 4.0.8 及更早的所有版本中存在授权绕过(Authorization Bypass)漏洞。 该漏洞的成因是插件未能正确验证执行操作的用户是否具备相应权限。这使得拥有订阅者(subscriber)级别或更高权限的已认证攻击者能够通过调用 永久删除任意 WordPress 文章,包括页面、课程、测验以及 WooCommerce 产品。 利用此漏洞的攻击链要求攻击者首先触发个人资料照片上传流程,从而创建一个由攻击者作为作者(autho
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| themeum | Tutor LMS – eLearning and online course solution | 0 ~ 4.0.8 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-89333 | 6.5 MEDIUM | Tutor LMS <= 4.0.8 - Insecure Direct Object Reference to Authenticated (Subscriber+) Sensi |
| CVE-2026-89081 | 6.1 MEDIUM | Tutor LMS <= 4.0.8 - Reflected Cross-Site Scripting via 'back_url' and 'search' Parameters |
No comments yet