Description
WordPress Plugin PowerPress Podcasting by Blubrry contains malicous code. Exploiting this issue may allow an attacker to create a new administrative user account, thus compromising the affected application, and possibly the webserver or computer. WordPress Plugin PowerPress Podcasting by Blubrry versions 11.9.3 - 11.9.4 are affected.
Remediation
Update to plugin version 11.9.7 or latest
References
Related Vulnerabilities
OpenSSL NULL Pointer Dereference Vulnerability (CVE-2016-7052)
WordPress Plugin UpdraftPlus WordPress Backup Cross-Site Scripting (1.9.63)
Django Improper Handling of Length Parameter Inconsistency Vulnerability (CVE-2024-38875)
Apache Tomcat Permissions, Privileges, and Access Controls Vulnerability (CVE-2013-0346)