25 lines
1.1 KiB
JSON
Raw Normal View History

{
"id": "CVE-2024-6879",
"sourceIdentifier": "contact@wpscan.com",
"published": "2024-08-26T06:15:04.867",
"lastModified": "2024-08-26T12:47:20.187",
"vulnStatus": "Awaiting Analysis",
"cveTags": [],
"descriptions": [
{
"lang": "en",
"value": "The Quiz and Survey Master (QSM) WordPress plugin before 9.1.1 fails to validate and escape certain Quiz fields before displaying them on a page or post where the Quiz is embedded, which could allows contributor and above roles to perform Stored Cross-Site Scripting (XSS) attacks."
},
{
"lang": "es",
"value": "El complemento Quiz and Survey Master (QSM) de WordPress anterior a 9.1.1 no valida ni escapa ciertos campos del cuestionario antes de mostrarlos en una p\u00e1gina o publicaci\u00f3n donde est\u00e1 integrado el cuestionario, lo que podr\u00eda permitir que los roles de colaborador y superiores realicen ataques de Cross-Site Scripting Almacenado."
}
],
"metrics": {},
"references": [
{
"url": "https://wpscan.com/vulnerability/4da0b318-03e7-409d-9b02-f108e4232c87/",
"source": "contact@wpscan.com"
}
]
}