Adapt Authoring Tool 0.11.3: When “Oops, I Did It Again” Meets Remote Command Execution
The Adapt Authoring Tool 0.11.3 has a Remote Command Execution (RCE) vulnerability that allows hackers to take control. It’s like leaving your front door open while announcing, “Hey, free snacks inside!” Be aware, update, and keep your digital house in order to avoid unexpected visitors.

Hot Take:
Looks like Adapt Authoring Tool just got a new “feature” — involuntary remote command execution! Who knew e-learning platforms could teach us so much about cybersecurity vulnerabilities?
Key Points:
- Adapt Authoring Tool version 0.11.3 is vulnerable to Remote Command Execution (RCE).
- Two CVE identifiers have been assigned: CVE-2024-50672 and CVE-2024-50671.
- The exploit involves creating a malicious plugin that executes arbitrary commands.
- The exploit script can reset passwords and gain super admin access.
- Vulnerability allows attackers to create and manipulate courses to execute commands.
Already a member? Log in here