Wisetail operates a learning-management system platform where its disclosures cluster around authorization and data-handling weaknesses, specifically user-controlled key bypass conditions and improper protection of sensitive information in accessible file locations. Treat this as a compact vendor profile rather than a broad trend line; live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Wisetail over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2018-16971MEDIUM Wisetail Learning Ecosystem (LE) through v4.11.6 allows insecure direct object reference (IDOR) attacks to access non-purchased course contents (quiz / test) via a modified id para | Sep 12, 2018 | 4.3 | 17 | NO | NO |
CVE-2018-16970MEDIUM Wisetail Learning Ecosystem (LE) through v4.11.6 allows insecure direct object reference (IDOR) attacks to download non-purchased course files via a modified id parameter. | Sep 12, 2018 | 4.3 | 17 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Wisetail.
Media articles that mention a CVE ID that affects a product developed by Wisetail — matched by CVE ID, not by vendor name.