CVE-2024-56940: High severity learndash lms vulnerability
Published Feb 12, 2025
·Updated
An issue in the profile image upload function of LearnDash v6.7.1 allows attackers to cause a Denial of Service (DoS) via excessive file uploads.
Affected Software
2 affected components
LearnDash LearnDash
LearnDash LearnDash Wordpress=6.7.1
Event History
Feb 12, 2025
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·10:15 PM
DescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-56940?
The severity of CVE-2024-56940 is significant due to its potential to cause a Denial of Service (DoS) through excessive file uploads.
2
How do I fix CVE-2024-56940?
To fix CVE-2024-56940, you should update LearnDash to the latest version that addresses this vulnerability.
3
What versions of LearnDash are affected by CVE-2024-56940?
CVE-2024-56940 specifically affects LearnDash version 6.7.1.
4
Can CVE-2024-56940 be exploited remotely?
Yes, CVE-2024-56940 can be exploited remotely, allowing attackers to trigger a Denial of Service from outside the network.
5
What kind of attack can CVE-2024-56940 facilitate?
CVE-2024-56940 facilitates a Denial of Service (DoS) attack by allowing excessive file uploads, potentially overwhelming the server.