CVE-2026-13332 - Masteriyo LMS < 2.3.1 - Unauthenticated Arbitrary User Session Termination (Denial of Service)
Summary
This entry details a vulnerability found in the target system. The exploit was published on 2026-08-04 and has garnered 1 views from the community. It is classified under the dos / poc category. Users are advised to review the source code in the Detail tab for technical specifics.
Zafiyet Ozet Bilgileri
Zafiyet Detayı (Turkce)
2.3.1 öncesi Masteriyo LMS WordPress eklentisi, kullanıcı oturumlarını temizlemek için kullanılan, kimliği doğrulanmamış bir AJAX eylemi üzerinde yetkilendirmeyi doğru bir şekilde doğrulamamakta ve kimliği doğrulanmamış saldırganların, yöneticiler de dahil olmak üzere sitedeki herhangi bir kullanıcının aktif oturumlarını sonlandırmasına (zorla oturum kapatma) olanak sağlamaktadır.
Orijinal Aciklama (Ingilizce)
CVE ID, Product, Vendor ... Pricing Browse by Apps View All Apps Splunk Slack Webhook Teams Jira Chrome API