CVE-2021-36906: WordPress Quiz And Survey Master plugin <= 7.3.6 - Multiple Insecure direct object references (IDOR) vulnerabilities
Published Nov 3, 2022
·Updated
Multiple Insecure Direct Object References (IDOR) vulnerabilities in ExpressTech Quiz And Survey Master plugin <= 7.3.6 on WordPress.
Affected Software
1 affected component
ExpressTech Quiz And Survey Master<=7.3.6
Remediation
Information
Update to 7.3.7 or higher version.
Event History
Nov 3, 2022
CVE Published
via MITRE·07:33 PM
Data Sourced
via MITRE·07:33 PM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·08:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is CVE-2021-36906?
CVE-2021-36906 refers to multiple Insecure Direct Object References (IDOR) vulnerabilities in the ExpressTech Quiz And Survey Master plugin version 7.3.6 and below on WordPress.
2
How severe is CVE-2021-36906?
CVE-2021-36906 has a severity rating of 8.8 (high).
3
How can I fix CVE-2021-36906?
To fix CVE-2021-36906, update the ExpressTech Quiz And Survey Master plugin to version 7.3.7 or higher.
4
Where can I find more information about CVE-2021-36906?
You can find more information about CVE-2021-36906 in the Patchstack vulnerability database and on the WordPress plugin page for Quiz And Survey Master.
5
What is the CWE ID for CVE-2021-36906?
The CWE ID for CVE-2021-36906 is 639.