S4E just found a high-severity finding from top 10 tcp port service scan
PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
critical·Product Based Web Vulnerabilities·Updated Oct 8, 2024

CVE-2021-24442 Scanner

Targets the 'date_answers[]' POST parameter in the Polls Widget plugin. An attacker can inject arbitrary SQL to extract or modify database contents.

Est. Time~1 minutes
Scan TypeSingle Scan
Targetsdomain, ipv4, subdomain
CostFree
3k
Times Used
continuous scan runs
3.3k
Continuously Checked
assets under CS
0
Vulnerabilities Found
confirmed findings
References
9.8
CVSS
Description

The Poll, Survey, Questionnaire and Voting system WordPress plugin before 1.5.3 did not sanitise, escape or validate the date_answers[] POST parameter before using it in a SQL statement when sending a Poll result, allowing unauthenticated users to perform SQL Injection attacks

Attack Vector
-
Privileges Req.
-
User Interaction
-
Affected
Poll, Survey, Questionnaire and Voting systemby wpdevart
AFFECTED< 1.5.3→SAFE ✓≥ 1.5.3
Updated Sep 26, 2026View on NVD →
Detail

WordPress Polls Widget is a popular plugin that allows website owners to create interactive polls and surveys to boost user engagement. It is commonly used by marketers, bloggers, and site administrators to collect feedback and opinions from visitors. The plugin integrates seamlessly with WordPress, offering customizable poll designs and real-time results. Its widespread adoption makes it a critical component for many sites, but also a prime target for attackers seeking to exploit vulnerabilities.

SQL Injection (SQLi) is a severe security flaw that occurs when user-supplied input is improperly sanitized before being used in database queries. In this case, the vulnerability arises because the plugin fails to validate or escape the 'date_answers[]' POST parameter. This allows an attacker to inject malicious SQL commands, potentially compromising the entire database. The flaw is classified as a critical issue due to its high impact and ease of exploitation.

The vulnerable endpoint is the poll submission handler, where the 'date_answers[]' parameter is processed. This parameter is directly concatenated into SQL queries without any sanitization, prepared statements, or parameterized queries. An attacker can craft a specially designed HTTP POST request containing SQL code in the 'date_answers[]' field, which then executes against the WordPress database. This technique can be used to bypass authentication, extract sensitive data, or even modify database records.

If successfully exploited, an attacker could gain unauthorized access to the WordPress database, leading to data theft, privilege escalation, or complete site takeover. Sensitive information such as user credentials, personal data, and site configurations could be exposed. Additionally, the attacker might inject malicious content or backdoors, compromising the site's integrity and reputation. Given the CVSS score of 9.8, immediate remediation is critical to prevent severe damage.

Solution Advice
  • Update the WordPress Polls Widget plugin to version 1.5.3 or later, which includes a security patch for this vulnerability.
  • Implement input validation and sanitization for all POST parameters, especially 'date_answers[]', using WordPress functions like sanitize_text_field().
  • Use prepared statements or parameterized queries with the $wpdb->prepare() method to prevent SQL injection.
  • Conduct regular security audits and vulnerability scans using tools like S4E to identify and fix similar issues.
  • Apply a Web Application Firewall (WAF) to block malicious SQL injection attempts at the network level.
  • Restrict database user permissions to the minimum required for the plugin to function, limiting potential damage.
  • Monitor server logs for unusual SQL queries or repeated failed login attempts that may indicate exploitation attempts.
  • Educate developers on secure coding practices, including the OWASP Top 10, to prevent future vulnerabilities.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.