CVE-2022-0377
Published on: Not Yet Published
Last Modified on: 08/02/2023 05:25:00 PM UTC
Certain versions of Learnpress from Thimpress contain the following vulnerability:
Users of the LearnPress WordPress plugin before 4.1.5 can upload an image as a profile avatar after the registration. After this process the user crops and saves the image. Then a "POST" request that contains user supplied name of the image is sent to the server for renaming and cropping of the image. As a result of this request, the name of the user-supplied image is changed with a MD5 value. This process can be conducted only when type of the image is JPG or PNG. An attacker can use this vulnerability in order to rename an arbitrary image file. By doing this, they could destroy the design of the web site.
- CVE-2022-0377 has been assigned by
con[email protected] to track the vulnerability - currently rated as MEDIUM severity.
- Affected Vendor/Software:
Unknown - LearnPress version < 4.1.5
CVSS3 Score: 4.3 - MEDIUM
Attack Vector ⓘ |
Attack Complexity |
Privileges Required |
User Interaction |
---|---|---|---|
NETWORK | LOW | LOW | NONE |
Scope | Confidentiality Impact |
Integrity Impact |
Availability Impact |
UNCHANGED | NONE | LOW | NONE |
CVSS2 Score: 3.5 - LOW
Access Vector ⓘ |
Access Complexity |
Authentication |
---|---|---|
NETWORK | MEDIUM | SINGLE |
Confidentiality Impact |
Integrity Impact |
Availability Impact |
NONE | PARTIAL | NONE |
CVE References
Description | Tags ⓘ | Link |
---|---|---|
Wordpress Learnpress Plugin <= 4.1.4.1 - Arbitrary Image Renaming | Ceylan Bozogullarindan's Webpage | bozogullarindan.com text/html |
![]() |
Attention Required! | Cloudflare | wpscan.com text/html Inactive LinkNot Archived |
![]() |
= 4.1.4.2 = · LearnPress/learnpress@d1dc4af · GitHub | github.com text/html |
![]() |
Known Affected Configurations (CPE V2.3)
Type | Vendor | Product | Version | Update | Edition | Language |
---|---|---|---|---|---|---|
Application | Thimpress | Learnpress | All | All | All | All |
- cpe:2.3:a:thimpress:learnpress:*:*:*:*:*:wordpress:*:*:
Social Mentions
Source | Title | Posted (UTC) |
---|---|---|
![]() |
CVE-2022-0377 is fucking useless | 2022-02-07 13:24:26 |
![]() |
CVE-2022-0377 : Users of the LearnPress WordPress plugin before 4.1.5 can upload an image as a profile avatar after… twitter.com/i/web/status/1… | 2022-02-28 21:15:25 |
![]() |
CVE-2022-0377 dlvr.it/SL668R | 2022-03-05 00:44:11 |
![]() |
Nueva vulnerabilidad: CVE-2022-0377 en LearnPress – WordPress LMS Conector. Según Incibe: Los usuarios del plugin… twitter.com/i/web/status/1… | 2022-03-07 13:18:19 |
![]() |
Severity: ? | Users of the LearnPress WordPress plugin... | CVE-2022-0377 | Link for more: alerts.remotelyrmm.com/CVE-2022-0377 | 2022-03-08 18:07:36 |