CVE-2013-1401 Information
Feb 14, 2021
cve
Description
Multiple security bypass vulnerabilities in the editAnswer deleteAnswer addAnswer and deletePoll functions in WordPress Poll Plugin 34.5 for WordPress allow a remote attacker to add edit and delete an answer and delete a poll.
CVSS Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Reference
http://www.securityfocus.com/bid/57479 https://exchange.xforce.ibmcloud.com/vulnerabilities/81467 https://www.securityfocus.com/archive/1/525370
Attack Complexity
LOW
Privileges Required
NONE
User Interaction Required
NONE
Scope
NONE
Confidentiality Impact
UNCHANGED
Integrity Impact
HIGH
Availability Impact
HIGH
Base Score
HIGH
Base Severity
9.8
Share on: