Description
WordPress Plugin Monarch Social Sharing is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently modify plugin settings. WordPress Plugin Monarch Social Sharing version 1.2.6 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 1.2.7 or latest
References
http://www.pritect.net/blog/elegant-themes-security-vulnerability
http://wptavern.com/critical-security-vulnerability-discovered-in-elegant-themes-products
http://us7.campaign-archive2.com/?u=9ae7aa91c578052b052b864d6&id=85b5d27651
Related Vulnerabilities
WordPress 6.3.x Multiple Vulnerabilities (6.3 - 6.3.4)
Moodle Resource Management Errors Vulnerability (CVE-2014-7847)
WordPress Plugin WP Customer Reviews Cross-Site Scripting (3.4.2)
PHP Other Vulnerability (CVE-2007-1649)
WordPress Plugin Premmerce Permalink Manager for WooCommerce Local File Inclusion (2.3.10)