The educational domain comprises fragmented solutions with different services, tools, and plugins. As a complex system, it raises several security and threat prevention concerns. We conducted an exploratory study to characterize security vulnerabilities and their impacts on Learning Management Systems. We focus on an intelligent educational solution using the risk assessment methodology HEAVENS 2.0. We identify vulnerabilities in architectural elements and detail two of them. Risks are not acceptable, and security measures must be adopted to avoid damage to students, tutors, and teachers. The results highlight the security vulnerabilities and the consequences of threats to users, hoping to motivate future research