Description
WordPress Plugin WP Symposium is prone to an open redirect vulnerability because the application fails to properly sanitize user-supplied input. Exploiting this issue may allow attackers to redirect users to arbitrary web sites and conduct phishing attacks; other attacks are also possible. WordPress Plugin WP Symposium version 13.12 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 14.02 or latest
References
Related Vulnerabilities
Oracle JRE CVE-2014-0432 Vulnerability (CVE-2014-0432)
WordPress Plugin Slimstat Analytics Cross-Site Scripting (4.1.5.2)
Apache Tomcat Numeric Errors Vulnerability (CVE-2014-0075)
WordPress 4.0.x Arbitrary File Deletion Vulnerability (4.0 - 4.0.23)
phpMyAdmin Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2016-9848)