Vulnerability Details CVE-2014-5185
SQL injection vulnerability in the Quartz plugin 1.01.1 for WordPress allows remote authenticated users with Contributor privileges to execute arbitrary SQL commands via the quote parameter in an edit action in the quartz/quote_form.php page to wp-admin/edit.php.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.036
EPSS Ranking 87.7%
CVSS Severity
CVSS v2 Score 6.0
Products affected by CVE-2014-5185
-
cpe:2.3:a:quartz_plugin_project:quartz_plugin:1.01.1