CVE-2015-9233
30.09.2017, 01:29
The cp-contact-form-with-paypal (aka CP Contact Form with PayPal) plugin before 1.1.6 for WordPress has CSRF with resultant XSS, related to cp_contactformpp.php and cp_contactformpp_admin_int_list.inc.php.
Vendor | Product | Version |
---|---|---|
codepeople | cp_contact_form_with_paypal | 𝑥 < 1.1.6 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References