Description
WordPress Plugin Advanced Contact form 7 DB is prone to an information disclosure vulnerability. Attackers can exploit this issue to obtain sensitive information that may help in launching further attacks. WordPress Plugin Advanced Contact form 7 DB version 1.1.0 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 1.1.1 or latest
References
Related Vulnerabilities
WordPress 3.8.x Arbitrary File Deletion Vulnerability (3.8 - 3.8.26)
WordPress Plugin My Calendar Cross-Site Scripting (3.2.17)
Oracle JRE CVE-2022-21365 Vulnerability (CVE-2022-21365)
PleskWin URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2023-24044)
WordPress Plugin Kanzu Support Desk-WordPress Helpdesk Remote Code Execution (2.4.6)