Description
WordPress Plugin DMSGuestbook is prone to a file manipulation vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently put text into existing text files only. WordPress Plugin DMSGuestbook version 1.17.4 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 1.17.5 or latest
References
Related Vulnerabilities
WordPress Plugin Fancy Cats Multiple Cross-Site Scripting Vulnerabilities (1.1)
Craft CMS Authorization Bypass Through User-Controlled Key Vulnerability (CVE-2026-28781)
PHP Other Vulnerability (CVE-2007-1884)
WordPress Plugin LearnDash LMS Multiple Information Disclosure Vulnerabilities (4.10.2)
Apache Traffic Server Resource Management Errors Vulnerability (CVE-2016-5396)