Description
WordPress Plugin Britetechs Companion contains malicous code. Exploiting this issue may allow an attacker to create a new administrative user account, thus compromising the affected application, and possibly the webserver or computer. WordPress Plugin Britetechs Companion version 2.2.7 is affected.
Remediation
Update to plugin version 2.2.8 or latest
References
Related Vulnerabilities
Drupal Core 8.9.x Multiple Security Bypass Vulnerabilities (8.9.0 - 8.9.18)
Oracle Application Server CVE-2008-1814 Vulnerability (CVE-2008-1814)
Liferay DXP Other Vulnerability (CVE-2024-26270)
WordPress Plugin GiveWP-Donation and Fundraising Platform Cross-Site Scripting (2.11.3)
WordPress Plugin ABC Test 'id' Parameter Cross-Site Scripting (0.1)