Description
WordPress Plugin Gantry 4 Framework is prone to a remote command execution vulnerability because it fails to properly validate user-supplied input. An attacker can exploit this issue to execute arbitrary commands within the context of the vulnerable application. WordPress Plugin Gantry 4 Framework version 4.1.3 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 4.1.4 or latest
References
Related Vulnerabilities
Occasions Cross-Site Request Forgery (1.0.4)
MySQL CVE-2015-4870 Vulnerability (CVE-2015-4870)
ownCloud Permissions, Privileges, and Access Controls Vulnerability (CVE-2014-3963)
ProfileGrid-User Profiles, Memberships, Groups and Communities Unspecified Vulnerability (2.6.4)
Apache HTTP Server Improper Input Validation Vulnerability (CVE-2011-3639)