Description
WordPress Plugin WP Fastest Cache is prone to a directory traversal vulnerability because it fails to sufficiently verify user-supplied input. Exploiting this issue can allow an attacker to obtain sensitive information that could aid in further attacks. WordPress Plugin WP Fastest Cache version 0.8.9.5 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 0.8.9.6 or latest
References
https://seclists.org/bugtraq/2019/Jul/53
https://plugins.svn.wordpress.org/wp-fastest-cache/trunk/readme.txt
Related Vulnerabilities
TYPO3 CVE-2013-7080 Vulnerability (CVE-2013-7080)
Jenkins Permissions, Privileges, and Access Controls Vulnerability (CVE-2014-2068)
WordPress Plugin FAQ Multiple Cross-Site Scripting Vulnerabilities (1.0.14)
WordPress Plugin post highlights 'ph_settings.php' SQL Injection (2.2)
IBM RTC Cross-site Scripting (XSS) Vulnerability (CVE-2020-4733)