Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2022-45981 | There is a vulnerability on Forma LMS version 3.1.0 and earlier that could allow an authenticated attacker (with the role of student) to privilege escalate in order to upload a Zip file through the plugin upload component. The exploitation of this vulnerability could lead to a remote code injection. |
Tue, 06 May 2025 20:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: INCIBE
Published:
Updated: 2025-05-06T19:44:17.503Z
Reserved: 2022-10-14T00:00:00.000Z
Link: CVE-2022-42925
Updated: 2024-08-03T13:19:05.524Z
Status : Modified
Published: 2022-10-31T20:15:13.967
Modified: 2024-11-21T07:25:36.350
Link: CVE-2022-42925
No data.
OpenCVE Enrichment
No data.
EUVD