oss-sec mailing list archives

CVE Request - CSRF and XSS in Encrypted Contact Form Wordpress Plugin v1.0.4


From: Nitin Venkatesh <venkatesh.nitin () gmail com>
Date: Sat, 16 May 2015 02:11:04 +0000

Hi,

I discovered CSRF and XSS vulnerabilities in the Encrypted Contact Form
Wordpress Plugin v1.0.4 which was responsibly disclosed and patched by the
vendor in v1.1.

I request a CVE for the same.

Reference:
http://seclists.org/fulldisclosure/2015/May/63

Thanks & regards,
Nitin Venkatesh

Current thread: