Description
WordPress Plugin Count per Day is prone to an information disclosure vulnerability. Attackers can exploit this issue to obtain sensitive information that may help in launching further attacks. WordPress Plugin Count per Day version 3.2.5 is vulnerable; prior versions may also be affected.
Remediation
Update to the latest version
References
http://seclists.org/fulldisclosure/2013/Mar/43
http://packetstormsecurity.com/files/120631/WordPress-Counter-Per-Day-3.2.3-Path-Disclosure.html
Related Vulnerabilities
WordPress Plugin Developer Formatter Cross-Site Request Forgery (2012.0.1.39)
WordPress Plugin Sina Extension for Elementor Multiple Cross-Site Scripting Vulnerabilities (3.3.11)
WordPress Plugin Timeline Calendar SQL Injection (1.2)
WordPress Plugin Downloads Manager Arbitrary File Upload (1.0)
WordPress Plugin Contact Form Email Multiple Vulnerabilities (1.2.65)