Description
WordPress Plugin SS Quiz is prone to a cross-site request forgery vulnerability and a security bypass vulnerability. An attacker can exploit these issues to perform unauthorized actions in the context of a user's active session or to bypass security restrictions and gain unauthorized access to the application; other attacks are also possible. WordPress Plugin SS Quiz version 1.11 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 1.12 or latest
References
Related Vulnerabilities
PHP Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2010-2190)
OpenSSL Double Free Vulnerability (CVE-2022-4450)
MySQL Other Vulnerability (CVE-2001-0407)
WordPress Plugin WP Plugin Info Card Unspecified Vulnerability (2.3.6)
Oracle Database Server CVE-2012-3220 Vulnerability (CVE-2012-3220)