Description
WordPress Plugin Social Discussions is prone to a remote file include vulnerability and an information disclosure vulnerability because it fails to sufficiently sanitize user-supplied input. Exploiting these issues could allow an attacker to compromise the application and the underlying system or to obtain sensitive information which may help in launching further attacks. WordPress Plugin Social Discussions version 6.1.1 is vulnerable; other versions may also be affected.
Remediation
Update to plugin version 6.1.2 or latest
References
http://www.securityfocus.com/bid/56091/exploit
http://www.exploit-db.com/exploits/22158/
Related Vulnerabilities
WordPress Plugin SearchWP Live Ajax Search Directory Traversal (1.6.2)
WordPress Plugin Restaurant Menu-Food Ordering System-Table Reservation Security Bypass (2.3.0)
Oracle HTTP Server Other Vulnerability (CVE-2021-41617)
WordPress Plugin SEO Redirection-301 Redirect Manager Unspecified Vulnerability (8.7)
WordPress Plugin Weather Effect-Christmas Santa Snow Falling Cross-Site Request Forgery (1.3.3)