Beta

Report

MasterStudy LMS <= 2.7.5 is vulnerable to Unauthenticated Admin Account Creation vulnerability

Unauthenticated
Published
2022-01-31

The MasterStudy LMS WordPress plugin before 2.7.6 does to validate some parameters given when registering a new account, allowing unauthenticated users to register as an admin

CVSS

Score:7.3

Severity:High

Version: 2.7.5

There is a patch available in v2.7.6 and we strongly recommend you update to this version as soon as possible.