Description
WordPress Plugin Image Slider is prone to a vulnerability that lets attackers delete arbitrary files because the application fails to properly verify user-supplied input. An attacker can exploit this vulnerability to delete arbitrary files in the context of the webserver process. WordPress Plugin Image Slider version 1.1.89 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 1.1.90 or latest
References
Related Vulnerabilities
Oracle Application Server Other Vulnerability (CVE-2006-3710)
XOOPS Other Vulnerability (CVE-2005-2113)
MediaWiki Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2012-4382)
SeoPanel Cross-site Scripting (XSS) Vulnerability (CVE-2020-35930)
Django Improper Authentication Vulnerability (CVE-2013-1443)