Description
WordPress Plugin SS Quiz is prone to a cross-site request forgery vulnerability and a security bypass vulnerability. An attacker can exploit these issues to perform unauthorized actions in the context of a user's active session or to bypass security restrictions and gain unauthorized access to the application; other attacks are also possible. WordPress Plugin SS Quiz version 1.11 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 1.12 or latest
References
Related Vulnerabilities
MySQL CVE-2024-21203 Vulnerability (CVE-2024-21203)
WordPress 4.8.x Multiple Vulnerabilities (4.8 - 4.8.10)
phpMyAdmin Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2022-0813)
Oracle JRE CVE-2011-3544 Vulnerability (CVE-2011-3544)
Nexus Repository Manager Incorrect Authorization Vulnerability (CVE-2018-16620)