Описание
The Quiz And Survey Master WordPress plugin before 8.1.11 does not properly sanitize and escape question titles, which could allow users with the Contributor role and above to perform Stored Cross-Site Scripting attacks
Ссылки
- ExploitThird Party Advisory
- Exploit
- ExploitThird Party Advisory
- Exploit
Уязвимые конфигурации
Конфигурация 1Версия до 8.1.11 (исключая)
cpe:2.3:a:expresstech:quiz_and_survey_master:*:*:*:*:*:wordpress:*:*
EPSS
Процентиль: 36%
0.00152
Низкий
5.4 Medium
CVSS3
Дефекты
Связанные уязвимости
CVSS3: 5.4
github
больше 2 лет назад
The Quiz And Survey Master WordPress plugin before 8.1.11 does not properly sanitize and escape question titles, which could allow users with the Contributor role and above to perform Stored Cross-Site Scripting attacks
EPSS
Процентиль: 36%
0.00152
Низкий
5.4 Medium
CVSS3