Description
WordPress Plugin AWSM Team-Team Showcase is prone to a local file inclusion vulnerability because it fails to sufficiently verify user-supplied input. Exploiting this issue may allow an attacker to obtain sensitive information that could aid in further attacks. WordPress Plugin AWSM Team-Team Showcase version 1.3.1 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 1.3.2 or latest
References
Related Vulnerabilities
Jboss EAP Permissions, Privileges, and Access Controls Vulnerability (CVE-2012-3427)
WordPress Plugin WPBakery Page Builder Clipboard Security Bypass (4.5.7)
WebLogic CVE-2020-5421 Vulnerability (CVE-2020-5421)
Atlassian Jira Improper Authentication Vulnerability (CVE-2021-41308)
WordPress Plugin WP Cost Estimation & Payment Forms Builder Directory Traversal (9.659)