Security Advisory

CVE-2018-14502

9.8
CRITICAL

Vulnerability Description

controllers/quizzes.php in the Kiboko Chained Quiz plugin before 1.0.9 for WordPress allows remote unauthenticated users to execute arbitrary SQL commands via the 'answer' and 'answers' parameters.
Published Date March 10, 2020
Official Source NIST NVD Advisory