PT-2022-13018 · Unknown · Quiz/Survey Master
Tsutomu Aramaki
·
Published
2022-01-17
·
Updated
2022-01-24
·
CVE-2022-0182
CVSS v3.1
5.4
Medium
| Vector | AV:N/AC:L/PR:L/UI:R/S:C/C:L/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
Quiz And Survey Master versions prior to 7.3.7
Description
A stored cross-site scripting issue allows a remote authenticated attacker to inject an arbitrary script via a website that uses Quiz And Survey Master.
Recommendations
For versions prior to 7.3.7, update to version 7.3.7 or later to resolve the issue.
Fix
XSS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Quiz/Survey Master