Description
WordPress Plugin Link Library is prone to an SQL injection and a cross-site scripting vulnerability. Exploiting these issues could allow an attacker to steal cookie-based authentication credentials, compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database. WordPress Plugin Link Library version 5.0.8 is vulnerable; other versions may also be affected.
Remediation
Update to plugin version 5.0.9 or latest
References
Related Vulnerabilities
Roundcube Improper Access Control Vulnerability (CVE-2016-9920)
WordPress Plugin WP Background Takeover Directory Traversal (4.1.4)
PHP Numeric Errors Vulnerability (CVE-2007-3996)
Internet Information Services Other Vulnerability (CVE-2000-0951)
WordPress Plugin Responsive Filterable Portfolio Unspecified Vulnerability (1.0.8)