Description
WordPress Plugin DMSGuestbook is prone to a file manipulation vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently put text into existing text files only. WordPress Plugin DMSGuestbook version 1.17.4 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 1.17.5 or latest
References
Related Vulnerabilities
WordPress Plugin Profile Extra Fields by BestWebSoft Cross-Site Scripting (1.0.7)
Joomla! Core 3.x.x Open Redirect (3.0.0 - 3.9.20)
WordPress Plugin Private Only Multiple Vulnerabilities (3.5.1)
Oracle Database Server CVE-2023-22096 Vulnerability (CVE-2023-22096)
PHP Resource Management Errors Vulnerability (CVE-2011-1657)