Description
Authorization Bypass Through User-Controlled Key vulnerability in Academy LMS Academy LMS allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Academy LMS: from n/a through 3.3.4.
Problem types
CWE-639 Authorization Bypass Through User-Controlled Key
Product status
Any version
Credits
n0_arafat_n0 (Patchstack Alliance)
References
patchstack.com/...ct-references-idor-vulnerability?_s_id=cve