Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Creativeitem Subscribe
Filtered by product Academy Lms
Total 4 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-47132 1 Creativeitem 1 Academy Lms 2023-02-09 N/A 8.8 HIGH
A Cross-Site Request Forgery (CSRF) in Academy LMS before v5.10 allows attackers to arbitrarily add Administrator users.
CVE-2022-47131 1 Creativeitem 1 Academy Lms 2023-02-09 N/A 4.8 MEDIUM
A Cross-Site Request Forgery (CSRF) in Academy LMS before v5.10 allows an attacker to arbitrarily create a page.
CVE-2022-47130 1 Creativeitem 1 Academy Lms 2023-02-09 N/A 4.3 MEDIUM
A Cross-Site Request Forgery (CSRF) in Academy LMS before v5.10 allows a discount coupon to be arbitrarily created if an attacker with administrative privileges interacts on the CSRF page.
CVE-2022-29380 1 Creativeitem 1 Academy Lms 2022-06-02 3.5 LOW 4.8 MEDIUM
Academy-LMS v4.3 was discovered to contain a stored cross-site scripting (XSS) vulnerability in the SEO panel.