Duplicator – WordPress Migration & Backup Plugin, CVE-2018-7543
- CVE, Research URL
- Published on
- Mar 26, 2018
- Research Description
- Cross-site scripting (XSS) vulnerability in installer/build/view.step4.php of the SnapCreek Duplicator plugin 1.2.32 for WordPress allows remote attackers to inject arbitrary JavaScript or HTML via the json parameter.
- Affected versions
-
Min -, max 1.2.33.
- Status
-
vulnerable