Description
WordPress Plugin Responsive Products Showcase Listing for WordPress-WP Product Gallery Lite [only if downloaded via the vendor website] contains suspicious code. Attackers can exploit this issue to perform a variety of actions. Successful attacks will compromise the affected application and possibly the webserver or computer. WordPress Plugin Responsive Products Showcase Listing for WordPress-WP Product Gallery Lite version 1.1.1 is vulnerable; prior versions may also be affected.
Remediation
Disable and remove the plugin, or download it from wordpress.org repository
References
Related Vulnerabilities
Oracle HTTP Server Out-of-bounds Write Vulnerability (CVE-2021-4034)
WordPress Plugin Login with Azure (Azure SSO) Cross-Site Scripting (1.4.4)
IBM RTC Improper Restriction of Rendered UI Layers or Frames Vulnerability (CVE-2020-4547)
MediaWiki Other Vulnerability (CVE-2005-0536)
SharePoint URL Redirection to Untrusted Site ('Open Redirect') Vulnerability (CVE-2020-1323)