Description
WordPress Plugin Responsive Clients Logo Gallery for WordPress-Smart Logo Showcase Lite [only if downloaded via the vendor website] contains suspicious code. Attackers can exploit this issue to perform a variety of actions. Successful attacks will compromise the affected application and possibly the webserver or computer. WordPress Plugin Responsive Clients Logo Gallery for WordPress-Smart Logo Showcase Lite version 1.1.7 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 1.1.8 or latest
References
Related Vulnerabilities
Apache HTTP Server Other Vulnerability (CVE-2003-0189)
WebLogic Deserialization of Untrusted Data Vulnerability (CVE-2019-10086)
WebLogic CVE-2016-5531 Vulnerability (CVE-2016-5531)
WordPress Plugin Spreadsheet (wpSS) Cross-Site Scripting (0.62)
WordPress Plugin HashThemes Demo Importer Security Bypass (1.1.1)