Description
WordPress Plugin Advanced Classifieds & Directory Pro is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently perform a variety of the plugin's actions or even take over a website. WordPress Plugin Advanced Classifieds & Directory Pro version 1.6.2 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 1.6.3 or latest
References
Related Vulnerabilities
WordPress Plugin post highlights Cross-Site Scripting (2.6)
WordPress Plugin Custom Metas Cross-Site Scripting (1.5.1)
WordPress Plugin Image Slider by Ays-Responsive Slider and Carousel SQL Injection (2.4.9)
MySQL CVE-2024-20983 Vulnerability (CVE-2024-20983)
WordPress Plugin Restaurant Reservations Privilege Escalation (1.3)