Lucene search

K

Quiz Security Vulnerabilities

cve
cve

CVE-2008-6626

SQL injection vulnerability in getin.php in WEBBDOMAIN Quiz 1.02 and earlier allows remote attackers to execute arbitrary SQL commands via the username parameter.

8.7AI Score

0.001EPSS

2009-04-06 09:30 PM
28
cve
cve

CVE-2009-1942

Cross-site scripting (XSS) vulnerability in the Quiz module 5.x, 6.x-2.x before 6.x-2.2, and 6.x-3.x before 6.x-3.0, a module for Drupal, allows remote authenticated users, with create quizzes or quiz questions access, to inject arbitrary web script or HTML via unspecified vectors.

5.4AI Score

0.001EPSS

2022-10-03 04:23 PM
19
cve
cve

CVE-2013-4500

The Quiz module 6.x-4.x before 6.x-4.5 for Drupal allows remote authenticated users with the "view any quiz results" or "view results for own quiz" permission to delete arbitrary results via the delete option.

6.6AI Score

0.001EPSS

2014-05-13 03:55 PM
15
cve
cve

CVE-2013-4501

The default views in the Quiz module 6.x-4.x before 6.x-4.5 for Drupal allows remote attackers to obtain sensitive quiz results via unspecified vectors.

6.7AI Score

0.003EPSS

2014-05-13 03:55 PM
18
cve
cve

CVE-2015-6736

The Quiz extension for MediaWiki allows remote attackers to cause a denial of service via regex metacharacters in a regular expression.

6.5AI Score

0.01EPSS

2015-09-01 02:59 PM
22