Lucene search

K
wpvulndbWpvulndbWPVDB-ID:49B1282B-21AE-45F3-BBE7-6AC2A7CDD340
HistoryOct 21, 2022 - 12:00 a.m.

Quiz And Survey Master < 7.3.7 - Multiple Author+ IDOR

2022-10-2100:00:00
wpscan.com
7
quiz and survey master
authorization bypass
security vulnerability

0.001 Low

EPSS

Percentile

42.9%

The plugin does not properly check for authorisation, which could allow users with a role as low as author to perform unauthorised actions, such as delete and duplicate quiz they should not be able to

CPENameOperatorVersion
quiz-master-nextlt7.3.7

0.001 Low

EPSS

Percentile

42.9%

Related for WPVDB-ID:49B1282B-21AE-45F3-BBE7-6AC2A7CDD340