The Contact Form Email plugin prior to 1.2.66 for WordPress allows wp-admin/admin.php item XSS, related to cp_admin_int_edition.inc.php in the "custom edition area."
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
codepeople contact form email |