Description
WordPress Plugin CTA for WordPress-Easy Side Tab [only if downloaded via the vendor website] contains suspicious code. Attackers can exploit this issue to perform a variety of actions. Successful attacks will compromise the affected application and possibly the webserver or computer. WordPress Plugin CTA for WordPress-Easy Side Tab version 1.0.7 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 1.0.8 or latest
References
Related Vulnerabilities
WordPress Plugin Smart Forms-when you need more than just a contact form Security Bypass (2.6.70)
WordPress Plugin Secure HTML5 Video Player Cross-Site Scripting (3.3)
WordPress Plugin Floating Social Bar Cross-Site Scripting (1.1.6)
IBM RTC Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2016-6024)
WordPress Plugin Google Maps by BestWebSoft Cross-Site Scripting (1.3.5)