Sploitus

CVE-2021-24181

1 known exploit for CVE-2021-24181

The tutor_mark_answer_as_correct AJAX action from the Tutor LMS – eLearning and online course solution WordPress plugin before 1.7.7 was vulnerable to blind and time based SQL injections that could be exploited by students.

Affected products
Tutor Lms
Themeum Tutor Lms
< 1.7.7
Fix
Available
CVSS 3.1
6.5 MEDIUM
EPSS
1.3% (67th percentile)
Weakness
CWE-89
NVD status
Modified
Published
2021-04-05
CVE-2021-24181 at NVD
Authoritative description, scoring and affected products

1 known exploit for CVE-2021-24181

Proof-of-concept code and exploit modules indexed by Sploitus