CVE-2023-23985: WordPress Quiz Maker plugin <= 6.3.9.4 - Content Spoofing
Published Apr 24, 2024
·Updated
Missing Authorization vulnerability in Quiz Maker team Quiz Maker.This issue affects Quiz Maker: from n/a through 6.3.9.4.
Affected Software
3 affected components
Quiz Maker Quiz Maker<=6.3.9.4
WordPress Quiz Maker<=6.3.9.4
ays-pro Quiz Maker Wordpress<6.3.9.5
Remediation
Information
Update to 6.3.9.5 or a higher version.
Event History
Apr 24, 2024
CVE Published
via MITRE·11:00 AM
Data Sourced
via MITRE·11:00 AM
RemedyDescriptionSeverityWeakness
Data Sourced
via NVD·11:15 AM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2023-23985?
CVE-2023-23985 is considered a high-severity vulnerability due to its potential for unauthorized access.
2
How do I fix CVE-2023-23985?
To fix CVE-2023-23985, update Quiz Maker to version 6.3.9.5 or later.
3
What impact does CVE-2023-23985 have on Quiz Maker?
CVE-2023-23985 allows attackers to bypass authorization mechanisms, potentially leading to unauthorized content modification.
4
Which versions of Quiz Maker are affected by CVE-2023-23985?
CVE-2023-23985 affects all versions of Quiz Maker from n/a up to and including 6.3.9.4.
5
Is there a workaround for CVE-2023-23985?
Currently, the recommended resolution for CVE-2023-23985 is to update to the latest version, as no official workaround is available.