Description
WordPress Plugin Captcha by BestWebSoft is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently bypass intended restrictions. WordPress Plugin Captcha by BestWebSoft version 3.8.7 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 3.8.8 or latest
References
Related Vulnerabilities
LimeSurvey Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2007-5573)
WordPress Plugin Mobile Device Detection by 51Degrees Cross-Site Scripting (3.1.5.2)
WordPress Plugin OAuth client Single Sign On for WordPress (OAuth 2.0 SSO) Security Bypass (3.0.3)
WordPress Plugin WP Accessibility Cross-Site Scripting (1.6.10)