CREATIVEITEM Academy LMS (Learning Management System) 5.14

CPE Details

CREATIVEITEM Academy LMS (Learning Management System) 5.14
5.14
2023-08-07
12h09 +00:00
2023-08-07
12h12 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:a:creativeitem:academy_lms:5.14:*:*:*:*:*:*:*

Informations

Vendor

creativeitem

Product

academy_lms

Version

5.14

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2025-56749 2025-10-15 00h00 +00:00 Creativeitem Academy LMS up to and including 6.14 uses a hardcoded default JWT secret for token signing. This predictable secret allows attackers to forge valid JWT tokens, leading to authentication bypass and unauthorized access to any user account.
9.4
Critique