📦 Quiz Maker

by Ays Pro

🔍 What is Quiz Maker?

Description coming soon...

🛡️ Security Overview

Click on a severity to filter vulnerabilities

⚠️ Known Vulnerabilities

CVE-2024-6028

CRITICAL CVSS 9.8 Jun 25, 2024

The Quiz Maker WordPress plugin contains a time-based SQL injection vulnerability in the 'ays_questions' parameter that allows unauthenticated attackers to execute arbitrary SQL queries. This can lead...

CVE-2024-10628

HIGH CVSS 7.5 Jan 26, 2025

This SQL injection vulnerability in Quiz Maker WordPress plugins allows unauthenticated attackers to inject malicious SQL queries via the 'id' parameter. This can lead to unauthorized database access ...

CVE-2021-24456

HIGH CVSS 7.2 Aug 2, 2021

This SQL injection vulnerability in the Quiz Maker WordPress plugin allows authenticated attackers with admin dashboard access to execute arbitrary SQL commands on the database. It affects WordPress s...

CVE-2025-67595

MEDIUM CVSS 4.3 Dec 9, 2025

This CSRF vulnerability in the Ays Pro Quiz Maker WordPress plugin allows attackers to trick authenticated administrators into performing unintended actions. It affects WordPress sites running Quiz Ma...

CVE-2025-12426

MEDIUM CVSS 5.3 Nov 19, 2025

The Quiz Maker WordPress plugin exposes quiz answers to unauthenticated attackers through an AJAX endpoint with insufficient authorization. This vulnerability allows anyone to extract sensitive quiz d...

CVE-2025-58015

MEDIUM CVSS 5.3 Sep 22, 2025

This vulnerability in the Ays Pro Quiz Maker WordPress plugin allows unauthorized users to retrieve embedded sensitive data from the system. It affects all WordPress sites running Quiz Maker plugin ve...

CVE-2025-10042

MEDIUM CVSS 5.9 Sep 17, 2025

The Quiz Maker WordPress plugin is vulnerable to SQL injection via spoofed IP headers in versions up to 6.7.0.56. Unauthenticated attackers can exploit this to extract sensitive database information w...