← Back to CVE List

CVE-2015-9233

Published: 2017-09-30T01:29Z
Last Modified: 2024-11-21T02:40Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
The cp-contact-form-with-paypal (aka CP Contact Form with PayPal) plugin before 1.1.6 for WordPress has CSRF with resultant XSS, related to cp_contactformpp.php and cp_contactformpp_admin_int_list.inc.php. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt