Description
WordPress Plugin DZS Video Gallery is prone to an information disclosure vulnerability. Attackers can exploit this issue to obtain sensitive information that may help in launching further attacks. WordPress Plugin DZS Video Gallery version 3.1.3 is vulnerable; other versions may also be affected.
Remediation
Edit the source code to ensure that input is properly verified or disable the plugin until a fix is available
References
Related Vulnerabilities
WordPress Plugin Simplr Registration Form Plus+ Privilege Escalation (2.4.3)
WordPress Plugin WP Scrippets Cross-Site Scripting (1.5.1)
Jetty CVE-2017-7656 Vulnerability (CVE-2017-7656)
OpenSSL NULL Pointer Dereference Vulnerability (CVE-2021-3449)
Internet Information Services Configuration Vulnerability (CVE-2003-1566)