Description
WordPress Plugin Shield Security-Smart Bot Blocking & Intrusion Prevention Security is prone to a local file inclusion vulnerability because it fails to sufficiently verify user-supplied input. Exploiting this issue may allow an attacker to obtain sensitive information that could aid in further attacks. WordPress Plugin Shield Security-Smart Bot Blocking & Intrusion Prevention Security version 18.5.9 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 18.5.10 or latest
References
Related Vulnerabilities
osTicket Improper Validation of Specified Quantity in Input Vulnerability (CVE-2023-30082)
WordPress Plugin The Official Facebook Chat Cross-Site Request Forgery (1.2)
MediaWiki Incorrect Permission Assignment for Critical Resource Vulnerability (CVE-2022-47927)
WordPress Plugin Claptastic Clap! Button Multiple Cross-Site Scripting Vulnerabilities (1.3)