First published: Thu Nov 03 2022(Updated: )
Multiple Insecure Direct Object References (IDOR) vulnerabilities in ExpressTech Quiz And Survey Master plugin <= 7.3.6 on WordPress.
Credit: audit@patchstack.com
Affected Software | Affected Version | How to fix |
---|---|---|
Expresstech Quiz And Survey Master | <=7.3.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-36906 refers to multiple Insecure Direct Object References (IDOR) vulnerabilities in the ExpressTech Quiz And Survey Master plugin version 7.3.6 and below on WordPress.
CVE-2021-36906 has a severity rating of 8.8 (high).
To fix CVE-2021-36906, update the ExpressTech Quiz And Survey Master plugin to version 7.3.7 or higher.
You can find more information about CVE-2021-36906 in the Patchstack vulnerability database and on the WordPress plugin page for Quiz And Survey Master.
The CWE ID for CVE-2021-36906 is 639.