CVE-2015-9233
EUVD-2015-908630.09.2017, 01:29
The cp-contact-form-with-paypal (aka CP Contact Form with PayPal) plugin before 1.1.6 for WordPress has CSRF with resultant XSS, related to cp_contactformpp.php and cp_contactformpp_admin_int_list.inc.php.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| codepeople | cp_contact_form_with_paypal | 𝑥 < 1.1.6 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References