The Ninja Forms plugin before 2.9.42.1 for WordPress allows remote attackers to conduct PHP object injection attacks via crafted serialized values in a POST request.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: jpcert

Published: 2016-05-14T15:00:00

Updated: 2024-08-05T22:48:13.521Z

Reserved: 2015-12-26T00:00:00

Link: CVE-2016-1209

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2016-05-14T15:59:03.020

Modified: 2024-11-21T02:45:57.523

Link: CVE-2016-1209

cve-icon Redhat

No data.