Description
WordPress Plugin Payment Gateways Caller for WP e-Commerce is prone to a local file inclusion vulnerability because it fails to sufficiently sanitize user-supplied input. Exploiting this issue may allow an attacker to obtain sensitive information that could aid in further attacks. WordPress Plugin Payment Gateways Caller for WP e-Commerce version 0.1 is vulnerable.
Remediation
Update to plugin version 0.1.1 or latest
References
Related Vulnerabilities
WordPress Plugin IP Geo Block Security Bypass (2.2.2)
Oracle Application Server Other Vulnerability (CVE-2001-0591)
Joomla! Core Directory Traversal (1.5.0 - 3.9.4)
PHP Improper Check for Unusual or Exceptional Conditions Vulnerability (CVE-2017-11144)
WordPress Plugin All-In-One Security (AIOS)-Security and Firewall SQL Injection (3.9.0)