WordPress ARI Stream Quiz Plugin <= 1.3.0 is vulnerable to PHP Object Injection
CVE-2023-52182
9.9CRITICAL
Key Information:
- Vendor
Wordpress
- Vendor
- CVE Published:
- 31 December 2023
What is CVE-2023-52182?
The ARI Stream Quiz plugin by ARI Soft is susceptible to a deserialization of untrusted data vulnerability. This issue allows attackers to exploit the plugin's handling of serialized data, potentially leading to remote code execution. Affected versions include all prior to 1.3.0. Users are strongly advised to audit their installations and apply necessary updates to mitigate the risk.
Affected Version(s)
ARI Stream Quiz – WordPress Quizzes Builder <= 1.3.0