CVE-2025-64212: WordPress MasterStudy LMS Pro plugin < 4.7.16 - Broken Access Control vulnerability
Missing Authorization vulnerability in StylemixThemes MasterStudy LMS Pro masterstudy-lms-learning-management-system-pro allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects MasterStudy LMS Pro: from n/a through < 4.7.16.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-64212?
CVE-2025-64212 is classified as a medium severity vulnerability due to its potential to allow unauthorized access.
How do I fix CVE-2025-64212?
To mitigate CVE-2025-64212, update the MasterStudy LMS Pro to version 4.7.16 or later as soon as possible.
What systems are affected by CVE-2025-64212?
CVE-2025-64212 affects versions of MasterStudy LMS Pro from n/a through 4.7.16.
What type of vulnerability is CVE-2025-64212?
CVE-2025-64212 is a missing authorization vulnerability related to incorrectly configured access control security levels.
Can CVE-2025-64212 be exploited by unauthorized users?
Yes, CVE-2025-64212 can potentially be exploited by unauthorized users to gain access to restricted information.