Description
WordPress Plugin Age Verification is prone to a URI redirection vulnerability because the application fails to properly sanitize user-supplied input. A successful exploit may aid in phishing attacks; other attacks are possible. WordPress Plugin Age Verification versions 0.4 and prior are vulnerable.
Remediation
Update to plugin version 0.5 or latest
References
http://www.securityfocus.com/bid/51357/exploit
http://www.exploit-db.com/exploits/18350/
http://packetstormsecurity.com/files/108535/wpavp-redirect.txt
Related Vulnerabilities
WordPress Plugin miniOrange Discord Integration Security Bypass (2.1.5)
Moodle Permissions, Privileges, and Access Controls Vulnerability (CVE-2012-4402)
PHP Improper Input Validation Vulnerability (CVE-2016-7129)
WordPress Plugin VideoWhisper Video Presentation 'vw_upload.php' Arbitrary File Upload (3.17)