Description
WordPress Plugin Video Embed & Thumbnail Generator is prone to an information disclosure vulnerability. Attackers can exploit this issue to obtain sensitive information that may help in launching further attacks. WordPress Plugin Video Embed & Thumbnail Generator version 1.1 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 2.0 or latest
References
Related Vulnerabilities
WordPress Plugin WatuPRO SQL Injection (5.5.3.6)
MySQL Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2016-8286)
WordPress Plugin Memphis Documents Library Cross-Site Request Forgery (3.9.20)
MySQL CVE-2017-3309 Vulnerability (CVE-2017-3309)
WordPress Plugin Gallery PhotoBlocks Cross-Site Scripting (1.1.42)