Description
WordPress Plugin Tutor LMS-eLearning and online course solution is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently add, modify, or delete data. WordPress Plugin Tutor LMS-eLearning and online course solution version 2.7.0 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 2.7.1 or latest
References
Related Vulnerabilities
MediaWiki URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2017-0363)
WordPress Plugin ALO EasyMail Newsletter Multiple Vulnerabilities (2.6.00)
Oracle Database Server CVE-2023-22034 Vulnerability (CVE-2023-22034)
Oracle Database Server CVE-2016-0472 Vulnerability (CVE-2016-0472)