Subscribe via feed.

Wisetail Learning Ecosystem 4.11.6 Insecure Direct Object Reference

Posted by deepcore on September 14, 2018 – 9:45 am

Wisetail Learning Ecosystem (LE) versions up to 4.11.6 suffer from multiple insecure direct object reference vulnerabilities that allow an attacker to download files and get access to the non-purchased course quiz test via a modified id parameter.


This post is under “exploit” and has no respond so far.
If you enjoy this article, make sure you subscribe to my RSS Feed.

Post a reply

You must be logged in to post a comment.