CVE-2014-100022 Information
Feb 14, 2021
cve
Description
SQL injection vulnerability in question.php in the mTouch Quiz before 3.0.7 for WordPress allows remote attackers to execute arbitrary SQL commands via the quiz parameter to wp-admin/edit.php.
Reference
http://secunia.com/advisories/57491 https://exchange.xforce.ibmcloud.com/vulnerabilities/91950 https://security.dxw.com/advisories/admin-xss-and-sqli-in-mtouch-quiz-3-0-6/ https://wordpress.org/plugins/mtouch-quiz/changelog/
Share on: