Description
WordPress Plugin WP AmASIN-The Amazon Affiliate Shop is prone to a directory traversal vulnerability because it fails to sufficiently sanitize user-supplied input. Exploiting this issue can allow an attacker to obtain sensitive information that could aid in further attacks. WordPress Plugin WP AmASIN-The Amazon Affiliate Shop version 0.9.6 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 0.9.7 or latest
References
Related Vulnerabilities
WordPress Plugin YOP Poll Cross-Site Scripting (5.8.0)
WordPress Plugin ThemeREX Addons Remote Code Execution (All)
Oracle JRE CVE-2013-5825 Vulnerability (CVE-2013-5825)
MySQL CVE-2013-0389 Vulnerability (CVE-2013-0389)
WordPress Plugin Payment Gateways Caller for WP e-Commerce Local File Inclusion (0.1)