CVE-2023-25700: WordPress Tutor LMS plugin <= 2.1.10 - Unauthenticated SQL Injection vulnerability
Published Nov 3, 2023
·Updated
A vulnerability in Themeum Tutor LMS tutor.This issue affects Tutor LMS: from n/a through <= 2.1.10.
Affected Software
1 affected component
Themeum Tutor Lms Wordpress<=2.1.10
Remediation
Information
Update to 2.2.0 or a higher version
Event History
Nov 3, 2023
CVE Published
via MITRE·04:44 PM
Data Sourced
via MITRE·04:44 PM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·05:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID?
The vulnerability ID is CVE-2023-25700.
2
What is the severity of CVE-2023-25700?
The severity of CVE-2023-25700 is critical.
3
What is the affected software?
The affected software is Themeum Tutor LMS plugin version up to 2.1.10.
4
How does CVE-2023-25700 manifest?
CVE-2023-25700 manifests as an SQL Injection vulnerability in the Themeum Tutor LMS plugin.
5
Is there a fix available for CVE-2023-25700?
Yes, a fix is available for CVE-2023-25700. Please refer to the reference link for the patch.