S4E just found a high-severity finding from top 10 tcp port service scan
PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
critical·Product Based Web Vulnerabilities·Updated Jan 25, 2024

CVE-2023-6634 Scanner

CVE-2023-6634 scanner - Remote Code Execution (RCE) vulnerability in LearnPress plugin for WordPress

Est. Time~10 seconds
Scan TypeSingle Scan
Targetsdomain, ipv4, subdomain
CostFree
2.6k
Times Used
continuous scan runs
3.7k
Continuously Checked
assets under CS
0
Vulnerabilities Found
confirmed findings
References
CVECVE-2023-6634
9.8
CVSShigh
Exploitable remotely over the internet · no authentication required.

The LearnPress plugin for WordPress is vulnerable to Command Injection in all versions up to, and including, 4.2.5.7 via the get_content function. This is due to the plugin making use of the call_user_func function with user input. This makes it possible for unauthenticated attackers to execute any public function with one parameter, which could result in remote code execution.

Attack Vector
Network
Privileges Req.
None
User Interaction
None
Affected
LearnPress – WordPress LMS Plugin for Create and Sell Online Coursesby thimpress
0
Updated Aug 22, 2026View on NVD →
Detail

The LearnPress plugin for WordPress is a well-known system for managing online courses. This plugin is used by educators to create online courses, add quizzes and assessments, collect payment, and track student progress. It helps businesses and entrepreneurs to educate their employees and customers, and individuals to share their knowledge online. The plugin has been downloaded more than 100,000 times and has a 4.5 out of 5 star rating on the WordPress repository. 

Unfortunately, the LearnPress plugin is vulnerable to a serious security issue, CVE-2023-6634, which can be exploited by attackers to execute arbitrary code remotely. This vulnerability is present in all versions up to 4.2.5.7 of the plugin through the get_content function, which is used to retrieve course content. The plugin uses the call_user_func function with user input, which enables unauthenticated attackers to execute public functions with one parameter, leading to remote code execution. 

When this vulnerability is exploited, it allows attackers to take control of the WordPress site and the data stored within. Attackers could access sensitive information, install malicious software or scripts, deface the website, or compromise the entire server. Hackers could use this information to commit identity theft, financial fraud, or launch targeted attacks. This vulnerability puts the security of the entire system at risk, and it is crucial that users of the LearnPress plugin take immediate action to protect themselves.

Thanks to the pro features of the s4e.io platform, users can easily identify vulnerabilities in their digital assets. With continuous security monitoring, users can detect and respond to threats in real-time, ensuring that their systems remain protected. This platform provides comprehensive security solutions, including network assessments, vulnerability scanning, penetration testing, and threat intelligence, enabling users to stay ahead of cyber threats. By using s4e.io, users can protect their systems and minimize the risk of cyber-attacks.

 

REFERENCES

Solution Advice

To protect against this vulnerability, users of LearnPress can take the following precautions:

  • Update the LearnPress plugin to the latest version available.
  • Limit the use of public functions with user input.
  • Review the plugin code for any instances of call_user_func with user input.
  • Use firewall protection to limit external access to the server.
  • Monitor the server logs for any suspicious activity.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.