Description
WordPress Plugin Everest GPlaces Business Reviews [only if downloaded via the vendor website] contains suspicious code. Attackers can exploit this issue to perform a variety of actions. Successful attacks will compromise the affected application and possibly the webserver or computer. WordPress Plugin Everest GPlaces Business Reviews version 1.0.9 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 2.0.0 or latest
References
Related Vulnerabilities
WordPress 'edit.php' Cross-Site Scripting Vulnerability (1.5)
Dolibarr Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2021-33816)
TYPO3 Improper Link Resolution Before File Access ('Link Following') Vulnerability (CVE-2014-9508)
MediaWiki Improper Input Validation Vulnerability (CVE-2017-8811)
Zope Web Application Server Other Vulnerability (CVE-2001-0567)