📦

poll\,_survey\,_questionnaire_and_voting_system

Vendor: wpdevart

Actively Exploited 0 CISA KEV List
PoC / Exploits 0 Code Available
Total RCEs 0 Remote Access
Total CVEs 2 Total Indexed
Avg. EPSS 23.68% Exploit Prob.
Latest CVE CVE-2022-34656 Sep 06

Security Vulnerability Index

Page 1 / 1
4.8 CVSS

Authenticated (admin+) Cross-Site Scripting (XSS) vulnerability in wpdevart Poll, Survey, Questionnaire and Voting system plugin <= 1.7.4 at WordPress.

EPSS: 0.45%
9.8 CVSS

The Poll, Survey, Questionnaire and Voting system WordPress plugin before 1.5.3 did not sanitise, escape or validate the date_answers[] POST parameter before using it in a SQL statement when sending a Poll result, allowing unauthenticated users to perform SQL Injection attacks

EPSS: 46.92%