Description
WordPress Plugin Video Embed & Thumbnail Generator is prone to multiple remote code execution vulnerabilities. Attackers can exploit these issues to execute arbitrary code within the context of the affected webserver process. WordPress Plugin Video Embed & Thumbnail Generator version 1.1 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 2.0 or latest
References
Related Vulnerabilities
ownCloud Other Vulnerability (CVE-2013-2089)
Drupal Core 9.1.x Cross-Site Scripting (9.1.0 - 9.1.13)
PHP Permissions, Privileges, and Access Controls Vulnerability (CVE-2010-3065)
Plone CMS URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2017-1000484)
Jboss EAP Improper Access Control Vulnerability (CVE-2013-4213)