Sploitus

CVE-2021-24182

1 known exploit for CVE-2021-24182

The tutor_quiz_builder_get_answers_by_question AJAX action from the Tutor LMS – eLearning and online course solution WordPress plugin before 1.8.3 was vulnerable to UNION based SQL injection that could be exploited by students.

Affected products
Tutor Lms
Themeum Tutor Lms
< 1.8.3
Fix
Available
CVSS 3.1
6.5 MEDIUM
EPSS
1.7% (76th percentile)
Weakness
CWE-89
NVD status
Modified
Published
2021-04-05
CVE-2021-24182 at NVD
Authoritative description, scoring and affected products

1 known exploit for CVE-2021-24182

Proof-of-concept code and exploit modules indexed by Sploitus