CyberRota Analysis
This is a medium severity vulnerability with a CVSS score of 6.0. It affects WordPress. It may be remotely exploitable. It involves a SQL injection risk. Exploitation may require the attacker to be authenticated.
CVE
CVE-2014-5185
Severity
MEDIUM
CVSS
6
EPSS
1.94%
WordPress
Original NVD Description
SQL injection vulnerability in the Quartz plugin 1.01.1 for WordPress allows remote authenticated users with Contributor privileges to execute arbitrary SQL commands via the quote parameter in an edit action in the quartz/quote_form.php page to wp-admin/edit.php.