ExpressTech Quiz And Survey Master (versions up to 8.1.4) contains an SQL injection caused by improper neutralization of special elements used in SQL commands, letting attackers execute arbitrary SQL queries, exploit requires user interaction.
id: CVE-2023-28787
info:
name: Quiz and Survey Master <= 8.1.4 - SQL Injection
author: Shivam K
...