Medium severity4.8NVD Advisory· Published Nov 8, 2021· Updated Jun 17, 2026
CVE-2021-24701
CVE-2021-24701
Description
The Quiz Tool Lite WordPress plugin through 2.3.15 does not sanitize multiple input fields used when creating or managing quizzes and in other setting options, allowing high privilege users to perform Cross-Site Scripting attacks even when the unfiltered_html capability is disallowed.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3<=2.3.15+ 1 more
- (no CPE)range: <=2.3.15
- (no CPE)range: <=2.3.15
- cpe:2.3:a:quiz_tool_lite_project:quiz_tool_lite:*:*:*:*:*:wordpress:*:*Range: <=2.3.15
Patches
Vulnerability mechanics
References
1- wpscan.com/vulnerability/f7b95789-43f2-42a5-95e6-eb7accbd5ed3nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.