Description
WordPress Plugin GA Top post for WP by Asentechllc is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently upload files with .p12 extension. WordPress Plugin GA Top post for WP by Asentechllc version 1.0 is vulnerable.
Remediation
Disable the plugin until a fix is available
References
Related Vulnerabilities
WordPress Plugin Community Events SQL Injection (1.3.5)
WordPress Plugin 1player Cross-Site Scripting (1.3)
WordPress Plugin cformsII 'lib_ajax.php' Multiple Cross-Site Scripting Vulnerabilities (13.1)
WordPress Incorrect Default Permissions Vulnerability (CVE-2011-1762)
WordPress Plugin Swipe Checkout for eShop Cross-Site Scripting (3.7.0)