Description
WordPress Plugin to Manage/Design WordPress Blog-WP Blog Manager Lite [only if downloaded via the vendor website] contains suspicious code. Attackers can exploit this issue to perform a variety of actions. Successful attacks will compromise the affected application and possibly the webserver or computer. WordPress Plugin to Manage/Design WordPress Blog-WP Blog Manager Lite version 1.1.0 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 1.1.2 or latest
References
Related Vulnerabilities
WordPress Plugin Twitter Feed:Embedded Timeline 'url' Parameter Cross-Site Scripting (0.3.1)
Oracle Database Server CVE-2011-2322 Vulnerability (CVE-2011-2322)
MySQL CVE-2021-35643 Vulnerability (CVE-2021-35643)
WordPress Plugin Sync to Etsy Marketplace from WooCommerce Cross-Site Request Forgery (3.3.1)