CVE-2022-45820: WordPress LearnPress Plugin <= 4.1.7.3.2 is vulnerable to SQL Injection
Published Jan 24, 2023
·Updated
SQL Injection (SQLi) vulnerability in LearnPress – WordPress LMS Plugin <= 4.1.7.3.2 versions.
Affected Software
1 affected component
thimpress Learnpress Wordpress<=4.1.7.3.2
Remediation
Information
Update to 4.2.0 or higher version.
Event History
Jan 24, 2023
CVE Published
via MITRE·09:18 AM
Data Sourced
via MITRE·09:18 AM
RemedyDescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2022-45820?
The severity of CVE-2022-45820 is critical (8.8).
2
What is the affected software for CVE-2022-45820?
The affected software for CVE-2022-45820 is LearnPress - WordPress LMS Plugin version <= 4.1.7.3.2.
3
How can I fix CVE-2022-45820?
To fix CVE-2022-45820, update LearnPress - WordPress LMS Plugin to a version higher than 4.1.7.3.2.
4
What is SQL Injection (SQLi) vulnerability?
SQL Injection (SQLi) vulnerability is a security vulnerability that allows an attacker to manipulate the SQL queries executed by an application.
5
What is the CWE of CVE-2022-45820?
The CWE of CVE-2022-45820 is CWE-89 (SQL Injection).