The Better Search plugin for WordPress is not secure in versions 2.5.2 and below. Unauthenticated attackers could potentially take advantage of this by sending a link to a site administrator and getting them to click on it. Doing this would then allow the attacker to import settings to the website.