Input validation vulnerability in WordPress Ad Widget 2.12.0

The WordPress Ad Widget plugin is a tool for WordPress websites. There is a security flaw in versions up to and including 2.11.0 which puts the website at risk. This vulnerability, known as Local File Inclusion, allows unauthorised attackers to include and execute arbitrary files on the server. This means that they can bypass access controls, gain access to sensitive data, or execute code. This is possible because the attackers can upload and include images and other “safe” file types.

Detected in:

Ad Widget for WordPress fixed vulnerable versions:
WordPress Ad Widget open vulnerable versions: >= * < 2.12.0

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.