Showing 1 vulnerability on this page for poll\,_survey\,_questionnaire_and_voting_system

Signals CISA KEV Ransomware Nuclei
wpdevart vulnerability results
VulnerabilityTitle and contextCVSSEPSSPoCsSignalsSTIX action

Poll, Survey, Questionnaire and Voting system < 1.5.3 - Unauthenticated Blind SQL Injection

The Poll, Survey, Questionnaire and Voting system WordPress plugin before 1.5.3 did not sanitise, escape or validate the date_answers[] POST parameter before using it in a SQL statement when sending a Poll result, allowing unauthenticated users to perform SQL Injection attacks

CWE-89Jul 12, 20211 related artifact
CVSS9.8v3.1EPSS46.9%PoCs0SignalsNot listed in CISA KEVNo known ransomware use1 Nuclei templateSTIX