Description
WordPress Plugin Visitor Traffic Real Time Statistics is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently install arbitrary plugins. WordPress Plugin Visitor Traffic Real Time Statistics version 2.11 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 2.12 or latest
References
https://ithemes.com/wordpress-vulnerability-report-april-2021-part-4/
https://plugins.svn.wordpress.org/visitors-traffic-real-time-statistics/trunk/readme.txt
Related Vulnerabilities
Oracle Database Server CVE-2011-0831 Vulnerability (CVE-2011-0831)
Drupal Core 6.x Multiple Vulnerabilities (6.0 - 6.12)
WordPress Plugin My Calendar Cross-Site Scripting (2.3.28)
MediaWiki Permissions, Privileges, and Access Controls Vulnerability (CVE-2013-2032)
Apache HTTP Server Resource Management Errors Vulnerability (CVE-2011-1928)