CVE-2021-24308
LifterLMS – WP LMS for eLearning, Online Courses, & Quizzes に報告された脆弱性
概要
The 'State' field of the Edit profile page of the LMS by LifterLMS – Online Course, Membership & Learning Management System Plugin for WordPress plugin before 4.21.1 is not properly sanitised when output in the About section of the profile page, leading to a stored Cross-Site Scripting issue. This could allow low privilege users (such as students) to elevate their privilege via an XSS attack when an admin will view their profile.
影響を受けるバージョン
- 4.21.1 未満
対処方法
LifterLMS – WP LMS for eLearning, Online Courses, & Quizzes を 4.21.1 以降に更新してください。これで本脆弱性は解消します。
この脆弱性は実証コードが公開されています。攻撃に利用されやすい状態のため、優先して対応してください。
LifterLMS – WP LMS for eLearning, Online Courses, & Quizzes の他の脆弱性を見る →
あなたのサイトは大丈夫ですか?
URLを入力するだけで、実際に使われているプラグインを検出し、 このデータベースと突き合わせて既知の脆弱性が残っていないかを確認できます。登録不要・無料です。
30秒で無料診断する参照
- http://packetstormsecurity.com/files/162856/WordPress-LifterLMS-4.21.0-Cross-Site-Scripting.html
- https://github.com/gocodebox/lifterlms/releases/tag/4.21.1
- https://wpscan.com/vulnerability/f29f68a5-6575-441d-98c9-867145f2b082
- http://packetstormsecurity.com/files/162856/WordPress-LifterLMS-4.21.0-Cross-Site-Scripting.html
- https://github.com/gocodebox/lifterlms/releases/tag/4.21.1
- https://wpscan.com/vulnerability/f29f68a5-6575-441d-98c9-867145f2b082