Description
WordPress Plugin DW Question & Answer is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently e.g. delete or edit answers. WordPress Plugin DW Question & Answer version 1.2.9 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 1.2.10 or latest
References
Related Vulnerabilities
Oracle Database Server CVE-2006-0256 Vulnerability (CVE-2006-0256)
WordPress Plugin Real-Time Find and Replace Cross-Site Scripting (3.8)
WordPress Plugin Stallion WordPress SEO Cross-Site Scripting (2.0)
WordPress Plugin Fancy Product Designer-WooCommerce Cross-Site Scripting (3.4.1)
Moodle Improper Privilege Management Vulnerability (CVE-2017-7532)