Description
WordPress Plugin Effectively Add & Customize Free Icons For WordPress Menus-WP Menu Icons Lite [only if downloaded via the vendor website] contains suspicious code. Attackers can exploit this issue to perform a variety of actions. Successful attacks will compromise the affected application and possibly the webserver or computer. WordPress Plugin Effectively Add & Customize Free Icons For WordPress Menus-WP Menu Icons Lite version 1.0.8 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 1.0.9 or latest
References
Related Vulnerabilities
WordPress Plugin Ultimate Instagram Feed Unspecified Vulnerability (1.3)
Joomla Permissions, Privileges, and Access Controls Vulnerability (CVE-2012-1611)
WordPress Plugin YITH WooCommerce Best Sellers Security Bypass (1.1.11)
WordPress Plugin Remove Yoast SEO comments Unspecified Vulnerability (1.0.4)