Description
WordPress Plugin Beautiful Stat Counter for WordPress-Everest Counter Lite [only if downloaded via the vendor website] contains suspicious code. Attackers can exploit this issue to perform a variety of actions. Successful attacks will compromise the affected application and possibly the webserver or computer. WordPress Plugin Beautiful Stat Counter for WordPress-Everest Counter Lite version 2.0.7 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 2.0.8 or latest
References
Related Vulnerabilities
Envoy Proxy Loop with Unreachable Exit Condition ('Infinite Loop') Vulnerability (CVE-2019-18836)
OpenSSL Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2015-3193)
Jboss EAP Improper Input Validation Vulnerability (CVE-2011-4575)
WordPress Plugin Gwolle Guestbook Cross-Site Scripting (2.5.3)
Oracle Database Server CVE-2013-5858 Vulnerability (CVE-2013-5858)