Description
WordPress Plugin A Page Flip Book is prone to a local file include vulnerability because it fails to sufficiently sanitize user-supplied input. An attacker can exploit this vulnerability to view files and execute local scripts in the context of the web server process; this may aid in launching further attacks. WordPress Plugin A Page Flip Book version 2.3 is vulnerable; other versions may also be affected.
Remediation
Update to the latest version
References
http://ceriksen.com/2012/07/10/wordpress-a-page-flip-book-plugin-local-file-inclusion-vulnerability/
Related Vulnerabilities
WordPress Plugin Database for Contact Form 7, WPforms, Elementor forms Cross-Site Scripting (1.1.6)
WordPress Plugin Wp Multiple Meta Box SQL Injection (1.0.0)
phpMyAdmin Cross-Site Request Forgery (CSRF) Vulnerability (CVE-2018-10188)
WordPress Plugin Facebook for WordPress Cross-Site Request Forgery (3.0.3)