Input validation vulnerability in CM Ad Changer 1.7.6

The CM Ad Changer plugin for WordPress has an issue that can be exploited by attackers. Prior to version 1.7.6, an attacker can inject malicious web scripts into the plugin by using certain parameters. If a victim’s browser executes this malicious code, the attacker can gain access to information or even take control of the victim’s device. To protect yourself from this, make sure you are using the latest version of the CM Ad Changer plugin.

Detected in:

CM Ad Changer fixed vulnerable versions: >= * < 1.7.6
CM Ad Changer – Ad Manager and Ad Server fixed vulnerable versions:

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.