CVE-2013-4500: Quiz Module Project Quiz
Medium severity, CVSS 4.9. EPSS: 1.1% chance of exploitation in the next 30 days.
The Quiz module 6.x-4.x before 6.x-4.5 for Drupal allows remote authenticated users with the "view any quiz results" or "view results for own quiz" permission to delete arbitrary results via the delete option.
Affected products
- Quiz Module Project Quiz: version 6.x-4.0 only; version 6.x-4.1 only; version 6.x-4.2 only; version 6.x-4.3 only; version 6.x-4.4 only
Published 2014-05-13. Last modified 2026-06-16.