Description
WordPress Plugin Mapplic Lite is prone to a server-side request forgery vulnerability. An attacker may leverage this issue to make the vulnerable server perform port scanning of hosts in internal or external networks; other attacks are also possible. WordPress Plugin Mapplic Lite version 1.0 is vulnerable.
Remediation
Update to plugin version 1.0.1 or latest
References
Related Vulnerabilities
WordPress Plugin Captcha by BestWebSoft SQL Injection (4.1.7)
Magento Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2020-24407)
Drupal Improper Input Validation Vulnerability (CVE-2016-9452)
WordPress Plugin Event post Local File Inclusion (5.9.5)
Atlassian Jira Incorrect Authorization Vulnerability (CVE-2018-20826)