CKEditor before 4.1.9 Improper Input Validation Vulnerability
CKEditor before 4.1.9 suffers from improper input validation vulnerability
The information has been provided by Muhamad Visat
The original article can be found at:https://github.com/xsmo/Image-Uploader-and-Browser-for-CKEditor/compare/4.1.8…v4.1.9
Code injection in pluginconfig.php in Image Uploader and Browser for CKEditor before 4.1.9 allows remote authenticated users to execute arbitrary PHP code.
CKEditor before 4.1.9