Description
WordPress Plugin HB AUDIO GALLERY LITE is prone to a vulnerability that lets attackers download arbitrary files because the application fails to sufficiently verify user-supplied input. This may allow an attacker to gain access to sensitive information, which may aid in launching further attacks. WordPress Plugin HB AUDIO GALLERY LITE version 1.0.0 is vulnerable.
Remediation
Edit the source code to ensure that input is properly verified or disable the plugin until a fix is available
References
Related Vulnerabilities
PHP Permissions, Privileges, and Access Controls Vulnerability (CVE-2012-0057)
WordPress Plugin MailUp newsletter sign-up form Security Bypass (1.3.2)
Sqlite Unrestricted Upload of File with Dangerous Type Vulnerability (CVE-2019-19925)
WordPress Plugin April's Super Functions Pack Cross-Site Scripting (1.4.7)
WordPress Plugin Mailster-Email Newsletter for WordPress Cross-Site Scripting (2.4.5.1)