The Campus Directory plugin for WordPress is not secure in versions up to and including 1.7.4. An attacker with access to an account on the WordPress site can use the plugin to store malicious code which can be used to take control of the site or steal information. It is important to update the plugin to the latest version as soon as possible.