Description
WordPress Plugin Simple 301 Redirects by BetterLinks is prone to multiple security bypass vulnerabilities. Exploiting these issues may allow attackers to perform otherwise restricted actions and subsequently set redirects that would deny access to the site, or install and activate arbitrary plugins. WordPress Plugin Simple 301 Redirects by BetterLinks versions starting from 2.0.0 and up to (and including) 2.0.3 are vulnerable.
Remediation
Update to plugin version 2.0.4 or latest
References
Related Vulnerabilities
ownCloud Cryptographic Issues Vulnerability (CVE-2013-1941)
IBM WebSEAL Inadequate Encryption Strength Vulnerability (CVE-2019-4151)
WordPress Plugin Js-appointment 'searchdata.php' SQL Injection (1.5)
Oracle Database Server CVE-2011-2322 Vulnerability (CVE-2011-2322)
WordPress Plugin MobileView by ColorLabs & Company Cross-Site Scripting (1.0.7)