Description
WordPress Plugin DM Albums is prone to a remote file disclosure vulnerability because it fails to sufficiently sanitize user-supplied input data. Exploiting the issue may allow an attacker to obtain sensitive information that could aid in further attacks. WordPress Plugin DM Albums version 1.9.2 is vulnerable; other versions may also be affected.
Remediation
Update to the latest version
References
Related Vulnerabilities
Django Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2016-2513)
Perl Out-of-bounds Read Vulnerability (CVE-2018-6798)
Oracle Application Server Other Vulnerability (CVE-2006-5365)
WordPress Plugin Logo Slider and Showcase Security Bypass (1.3.36)
Oracle Database Server SYS Account privilege issue (CVE-2021-2000)