CVE-2023-0236 Scanner

Detects 'Cross-Site Scripting (XSS)' vulnerability in WordPress Tutor LMS affects versions before 2.0.10.


Short Info



Single Scan

Single Scan

Can be used by

Asset Owner

Estimated Time

10 sec

Scan only one

Domain, Ipv4



WordPress Tutor LMS is an advanced, feature-rich Learning Management System (LMS) plugin designed for WordPress websites. It enables educators to create, manage, and sell online courses with ease. Utilized by educational institutions, professional trainers, and individual educators worldwide, Tutor LMS offers a powerful platform for delivering educational content online. With its intuitive course builder, quiz creator, and reporting features, it facilitates engaging learning experiences. The plugin supports a range of multimedia and interactive elements, making it a popular choice for online education.

The Cross-Site Scripting (XSS) vulnerability in WordPress Tutor LMS plugin before version 2.0.10 stems from the plugin’s failure to properly sanitize and escape user-supplied input in the reset_key and user_id parameters. This oversight allows attackers to inject malicious scripts into web pages, which are then executed in the context of the user's browser. Such scripts can steal cookies, hijack sessions, or redirect users to malicious websites, posing a significant security risk, especially when exploited against users with administrative privileges.

The XSS vulnerability is specifically present in the password reset functionality of the Tutor LMS plugin. By manipulating the reset_key and user_id parameters, attackers can embed malicious JavaScript code into the generated web page. The injected script is executed when an unsuspecting user views the compromised page, leading to potential security breaches such as session hijacking and data theft. The lack of proper input validation and output encoding in these parameters highlights a critical security oversight in the plugin's development.

Exploiting this vulnerability could lead to unauthorized access to sensitive information, compromise of user accounts, and control over the affected website. Attackers could potentially redirect users to phishing sites, modify content on the website, or perform actions on behalf of the user, including administrative actions if the targeted user is an administrator. This could severely impact the integrity and reputation of the website, leading to loss of trust among users and potential legal implications.

