Lucene search

K
prionPRIOn knowledge basePRION:CVE-2024-1079
HistoryFeb 07, 2024 - 8:15 a.m.

Design/Logic Flaw

2024-02-0708:15:00
PRIOn knowledge base
www.prio-n.com
6
wordpress
quiz maker
unauthorized access
data vulnerability
pii

7.2 High

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

20.5%

The Quiz Maker plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the ays_show_results() function in all versions up to, and including, 6.5.2.4. This makes it possible for unauthenticated attackers to fetch arbitrary quiz results which can contain PII.

CPENameOperatorVersion
quiz_makerlt6.5.2.5

7.2 High

AI Score

Confidence

Low

0.001 Low

EPSS

Percentile

20.5%

Related for PRION:CVE-2024-1079