Description
WordPress Plugin Video Embed & Thumbnail Generator is prone to an information disclosure vulnerability. Attackers can exploit this issue to obtain sensitive information that may help in launching further attacks. WordPress Plugin Video Embed & Thumbnail Generator version 1.1 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 2.0 or latest
References
Related Vulnerabilities
Atlassian Confluence Incorrect Default Permissions Vulnerability (CVE-2017-9505)
PHP Zend_Hash_Del_Key_Or_Index vulnerability
XWiki Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2023-30537)
PHP Other Vulnerability (CVE-2006-4483)
WordPress Plugin Image Slider by Ays-Responsive Slider and Carousel SQL Injection (2.4.9)