cleantalk
Vulnerabilities and Security Researches

Duplicator – WordPress Migration & Backup Plugin, CVE-2018-7543

CVE, Research URL

CVE-2018-7543

Published on
Mar 26, 2018
Research Description
Cross-site scripting (XSS) vulnerability in installer/build/view.step4.php of the SnapCreek Duplicator plugin 1.2.32 for WordPress allows remote attackers to inject arbitrary JavaScript or HTML via the json parameter.
Affected versions
Min -, max 1.2.33.
Status
vulnerable