plugin

Quartz Vulnerabilities

1 known security issue reported for the Quartz WordPress plugin. Most recent disclosed May 28, 2014.

1 high

Running Quartz on your site? Check whether your installed version is affected.

Scan your site free

Quartz <= 1.01.1 - SQL Injection

high

SQL injection vulnerability in the Quartz plugin 1.01.1 for WordPress allows remote authenticated users with Contributor privileges to execute arbitrary SQL commands via the quote parameter in an edit action in the quartz/quote_form.php page to wp-admin/edit.php.

CVSS:
8.8
Affected:
up to 1.01.1
Fix:
No patched version reported
Disclosed:
May 28, 2014

CVE-2014-5185 on NVD →

Protect your WordPress site

Run a free security scan to detect vulnerable plugins and themes, exposed files, and malware — no plugin install, no signup.

Scan your site free

← Back to the vulnerability database