Masteriyo LMS < 3.4.1 - Instructor+ Stored XSS via Course Highlights
33Vexday Risk Score
No sign of exploitation. It has a public proof of concept.
ssvc Attendcvss 6.8epss 0.2%
exploitation probability
0.2%top 85% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
The Masteriyo LMS WordPress plugin before 3.4.1 does not sanitise and escape one of its course fields before outputting it back in the course editor, allowing users with the instructor role to perform Stored Cross-Site Scripting attacks against higher privileged users such as administrators.
CVSS:3.1/AV:N/AC:L/PR:H/UI:R/S:U/C:H/I:H/A:H
Affected products
Unknown · Masteriyo LMSpublic PoCs found — 1
cve_referencewpscan.com/vulnerability/9cc4f7a7-e5b9-48fe-962b-f5d0753e6158/unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.