Description
WordPress Plugin Print My Blog-Print, PDF, & eBook Converter is prone to a server-side request forgery vulnerability. An attacker may leverage this issue to make the vulnerable server perform port scanning of hosts in internal or external networks; other attacks are also possible. WordPress Plugin Print My Blog-Print, PDF, & eBook Converter version 1.6.5 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 1.6.6 or latest
References
http://dumpco.re/bugs/wp-plugin-print-my-blog-ssrf
https://plugins.svn.wordpress.org/print-my-blog/trunk/readme.txt
Related Vulnerabilities
WordPress 4.3.x Multiple Vulnerabilities (4.3 - 4.3.20)
WordPress Plugin Newsletter Subscription Form Possible Remote Code Execution (1.1.2)
Internet Information Services Improper Input Validation Vulnerability (CVE-2000-0258)
WordPress Plugin Secure HTML5 Video Player Cross-Site Scripting (3.14)
WordPress Plugin WooCommerce Checkout For Digital Goods Cross-Site Request Forgery (2.2)