Server-Side Request Forgery (SSRF) vulnerability in Kiboko Labs Chained Quiz allows Server Side Request Forgery. This issue affects Chained Quiz: from n/a through 1.3.2.9.
Fixes

Solution

Update the WordPress Chained Quiz wordpress plugin to the latest available version (at least 1.3.3).


Workaround

No workaround given by the vendor.

History

Wed, 12 Feb 2025 20:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Fri, 24 Jan 2025 17:30:00 +0000

Type Values Removed Values Added
Description Server-Side Request Forgery (SSRF) vulnerability in Kiboko Labs Chained Quiz allows Server Side Request Forgery. This issue affects Chained Quiz: from n/a through 1.3.2.9.
Title WordPress Chained Quiz Plugin <= 1.3.2.9 - Server Side Request Forgery (SSRF) vulnerability
Weaknesses CWE-918
References
Metrics cvssV3_1

{'score': 4.4, 'vector': 'CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:C/C:L/I:L/A:N'}


cve-icon MITRE

Status: PUBLISHED

Assigner: Patchstack

Published:

Updated: 2025-02-12T20:01:18.672Z

Reserved: 2025-01-23T14:52:23.104Z

Link: CVE-2025-24701

cve-icon Vulnrichment

Updated: 2025-02-12T19:55:34.229Z

cve-icon NVD

Status : Received

Published: 2025-01-24T18:15:43.207

Modified: 2025-01-24T18:15:43.207

Link: CVE-2025-24701

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.