PT-2022-28057 · Unknown · Fp Masterquiz

Kurt Gusbeth

·

Published

2022-12-14

·

Updated

2025-04-21

·

CVE-2022-47407

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions fp masterquiz extension versions 2.2.0 and earlier, 3.x before 3.5.1
Description An issue allows an attacker to continue the quiz of a different user, enabling them to view and modify that user's answers.
Recommendations For fp masterquiz extension versions 2.2.0 and earlier, update to version 2.2.1 or later. For fp masterquiz extension versions 3.x before 3.5.1, update to version 3.5.1 or later.

Exploit

Fix

Improper Access Control

Weakness Enumeration

Related Identifiers

CVE-2022-47407
GHSA-7GPW-FRPH-FWRG

Affected Products

Fp Masterquiz