Description
WordPress Plugin Tera Charts is prone to multiple local file inclusion vulnerabilities because it fails to sufficiently sanitize user-supplied input. Exploiting these issues may allow an attacker to obtain sensitive information that could aid in further attacks. WordPress Plugin Tera Charts version 0.1 is vulnerable.
Remediation
Update to plugin version 1.0 or latest
References
Related Vulnerabilities
WordPress Plugin AI ChatBot Arbitrary File Deletion (4.9.2)
WordPress Plugin Product Catalog PHP Object Injection (4.2.25)
Apache Traffic Server Improper Input Validation Vulnerability (CVE-2017-5659)
Ruby on Rails Improper Input Validation Vulnerability (CVE-2019-5420)
WordPress Plugin Category and Page Icons Cross-Site Scripting (0.9.2)