Description
WordPress Plugin Social Sticky Animated contains a backdoor. Attackers can exploit this issue to execute arbitrary commands in the context of the application. Successful attacks will compromise the affected application and possibly the webserver or computer. WordPress Plugin Social Sticky Animated version 1.0 is vulnerable.
Remediation
Disable the plugin until a fix is available
References
Related Vulnerabilities
WordPress Plugin Ecommerce-Two Factor Authentication Cross-Site Scripting (1.0.4)
Serendipity Permissions, Privileges, and Access Controls Vulnerability (CVE-2010-1916)
Squid Improper Input Validation Vulnerability (CVE-2019-12520)
WordPress Plugin Content Cards Cross-Site Scripting (0.9.6)
WordPress Plugin BigDoor Quick Gamification for WordPress Cross-Site Scripting (1.0.5)