Description
Improper Control of Resource Identifiers in TCExam 14.2.2 allows a remote, authenticated attacker to access test metadata for which they don't have permission.
Remediation
References
Related Vulnerabilities
WordPress Plugin WP-StarsRateBox 'j' Parameter SQL Injection (1.1)
Squid Improper Certificate Validation Vulnerability (CVE-2023-46724)
PHP Out-of-bounds Read Vulnerability (CVE-2019-19246)
WordPress Plugin Events SQL Injection (2.3.4)
WordPress Plugin Copperleaf Photolog 'cplphoto.php' SQL Injection (0.16)