Description
WordPress Plugin Fancy Slideshows is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently overwrite default slide sources or styles. WordPress Plugin Fancy Slideshows version 2.4 is vulnerable; prior versions are also affected.
Remediation
Update to plugin version 2.4.1 or latest
References
Related Vulnerabilities
WordPress Plugin WP Fastest Cache Directory Traversal (0.9.1.6)
Moodle Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2012-6105)
WordPress Plugin CSV Import Cross-Site Scripting (1.0)
TYPO3 URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2021-21338)
WordPress Plugin ALO EasyMail Newsletter Multiple Vulnerabilities (2.6.00)