Description
WordPress Plugin WP AmASIN-The Amazon Affiliate Shop is prone to a directory traversal vulnerability because it fails to sufficiently sanitize user-supplied input. Exploiting this issue can allow an attacker to obtain sensitive information that could aid in further attacks. WordPress Plugin WP AmASIN-The Amazon Affiliate Shop version 0.9.6 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 0.9.7 or latest
References
Related Vulnerabilities
WordPress Plugin Google Doc Embedder Multiple Vulnerabilities (2.6.1)
PHP Other Vulnerability (CVE-2007-1824)
WordPress Plugin Blogstand Banner Cross-Site Scripting (1.0)
Apache Tomcat Uncontrolled Resource Consumption Vulnerability (CVE-2020-11996)
WordPress Plugin Post Lists View Custom Cross-Site Scripting (1.7.1)