Unrated severityNVD Advisory· Published Nov 8, 2021· Updated Aug 3, 2024
Quiz Tool Lite <= 2.3.15 - Multiple Admin+ Stored Cross-Site Scripting
CVE-2021-24701
Description
The Quiz Tool Lite WordPress plugin through 2.3.15 does not sanitize multiple input fields used when creating or managing quizzes and in other setting options, allowing high privilege users to perform Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2<=2.3.15+ 1 more
- (no CPE)range: <=2.3.15
- (no CPE)range: <=2.3.15
Patches
Vulnerability mechanics
References
1- wpscan.com/vulnerability/f7b95789-43f2-42a5-95e6-eb7accbd5ed3mitrex_refsource_MISC
News mentions
0No linked articles in our index yet.