CVE-2025-64214: WordPress MasterStudy LMS Pro plugin < 4.7.16 - Arbitrary Content Deletion vulnerability
Missing Authorization vulnerability in StylemixThemes MasterStudy LMS Pro masterstudy-lms-learning-management-system-pro allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects MasterStudy LMS Pro: from n/a through < 4.7.16.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-64214?
CVE-2025-64214 is classified as a Missing Authorization vulnerability that can lead to unauthorized access to sensitive functionalities.
How do I fix CVE-2025-64214?
To mitigate CVE-2025-64214, upgrade to MasterStudy LMS Pro version 4.7.16 or later where the vulnerability has been addressed.
What systems are impacted by CVE-2025-64214?
CVE-2025-64214 affects MasterStudy LMS Pro versions prior to 4.7.16.
What type of vulnerability is CVE-2025-64214?
CVE-2025-64214 is categorized as a Missing Authorization vulnerability due to insufficient access controls.
What risks are associated with CVE-2025-64214?
Exploitation of CVE-2025-64214 could allow attackers to access functionality that should be restricted, potentially leading to data breaches.