Description
WordPress Plugin Ad Invalid Click Protector (AICP) contains malicous code. Exploiting this issue may allow an attacker to create a new administrative user account, thus compromising the affected application, and possibly the webserver or computer. WordPress Plugin Ad Invalid Click Protector (AICP) version 1.2.9 is affected.
Remediation
Update to plugin version 1.2.11 or latest
References
Related Vulnerabilities
Dotclear Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2016-7902)
Apache Traffic Server Uncontrolled Resource Consumption Vulnerability (CVE-2025-49763)
WordPress Plugin Fancy Gallery Cross-Site Scripting (1.5.12)
MediaWiki Improper Handling of Exceptional Conditions Vulnerability (CVE-2020-25869)