The Ninja Forms plugin before 2.9.42.1 for WordPress allows remote attackers to conduct PHP object injection attacks via crafted serialized values in a POST request.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: jpcert

Published: 2016-05-14T15:00:00

Updated: 2024-08-05T22:48:13.521Z

Reserved: 2015-12-26T00:00:00

Link: CVE-2016-1209

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2016-05-14T15:59:03.020

Modified: 2016-06-23T17:54:40.433

Link: CVE-2016-1209

cve-icon Redhat

No data.