NONE · 0

CVE-2019-25297

Poll, Survey & Quiz Maker Plugin by Opinion Stage Wordpress plugin versions prior to 19.6.25 contain a stored cross-site scripting (XSS) vulnerability via multiple parameters due to insufficient input...

Vulnerability Description

Poll, Survey & Quiz Maker Plugin by Opinion Stage Wordpress plugin versions prior to 19.6.25 contain a stored cross-site scripting (XSS) vulnerability via multiple parameters due to insufficient input validation and output escaping. An unauthenticated attacker can inject arbitrary script into content that executes when a victim views an affected page.

Related Weaknesses (CWE)

References

FAQ

What is CVE-2019-25297?

CVE-2019-25297 is a documented vulnerability. Poll, Survey & Quiz Maker Plugin by Opinion Stage Wordpress plugin versions prior to 19.6.25 contain a stored cross-site scripting (XSS) vulnerability via multiple parameters due to insufficient input...

How severe is CVE-2019-25297?

CVSS scoring is not yet available for CVE-2019-25297. Check NVD for updates.

Is there a patch for CVE-2019-25297?

Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.