Description
WordPress Plugin A Page Flip Book is prone to a local file include vulnerability because it fails to sufficiently sanitize user-supplied input. An attacker can exploit this vulnerability to view files and execute local scripts in the context of the web server process; this may aid in launching further attacks. WordPress Plugin A Page Flip Book version 2.3 is vulnerable; other versions may also be affected.
Remediation
Update to the latest version
References
http://ceriksen.com/2012/07/10/wordpress-a-page-flip-book-plugin-local-file-inclusion-vulnerability/
Related Vulnerabilities
WordPress Plugin Alpine PhotoTile for Instagram Cross-Site Scripting (1.2.7.4)
WordPress Plugin WP-Members Membership Cross-Site Scripting (3.1.4.1)
WordPress Plugin SecuPress Free-WordPress Security Security Bypass (1.4.13)
MediaWiki Exposure of Resource to Wrong Sphere Vulnerability (CVE-2021-31548)
Joomla Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2010-1432)