SQL Injection Vulnerability in Quiz Maker WordPress Plugin

SQL Injection Vulnerability in Quiz Maker WordPress Plugin

CVE-2021-24456 · HIGH Severity

CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

The Quiz Maker WordPress plugin before 6.2.0.9 did not properly sanitise and escape the order and orderby parameters before using them in SQL statements, leading to SQL injection issues in the admin dashboard

Learn more about our Wordpress Pen Testing.