Description
WordPress Plugin ChimpMate-WordPress MailChimp Assistant is prone to a local file inclusion vulnerability because it fails to sufficiently verify user-supplied input. Exploiting this issue may allow an attacker to obtain sensitive information that could aid in further attacks. WordPress Plugin ChimpMate-WordPress MailChimp Assistant version 1.3.2 is vulnerable; prior versions may also be affected.
Remediation
Edit the source code to ensure that input is properly verified or disable the plugin until a fix is available
References
Related Vulnerabilities
WordPress Plugin Digital Publications by Supsystic Multiple Vulnerabilities (1.6.9)
WordPress Plugin MAZ Loader-Preloader Builder for WordPress SQL Injection (1.3.2)
WordPress Plugin Data Tables Generator by Supsystic Cross-Site Scripting (1.10.19)
WordPress 3.8.1 Multiple Vulnerabilities (3.8 - 3.8.1)
WordPress Plugin WP Sitemap Page Cross-Site Scripting (1.6.6)