The Ninja Forms plugin before 2.9.42.1 for WordPress allows remote attackers to conduct PHP object injection attacks via crafted serialized values in a POST request.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: jpcert

Published:

Updated: 2024-08-05T22:48:13.521Z

Reserved: 2015-12-26T00:00:00

Link: CVE-2016-1209

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2016-05-14T15:59:03.020

Modified: 2025-04-12T10:46:40.837

Link: CVE-2016-1209

cve-icon Redhat

No data.