Input validation vulnerability in ListingPro Plugin 2.9.3

The ListingPro Plugin for WordPress is not completely secure and can be exploited by hackers. This vulnerability, known as Local File Inclusion, affects all versions up to 2.9.3. This means that attackers who have author-level access or higher can access and run any files they want on the server, including PHP code. This can potentially bypass security measures and access sensitive information, or even execute malicious code. This is especially dangerous if users are able to upload and include seemingly safe file types, such as images.

Detected in:

ListingPro Plugin open vulnerable versions: >= * <= 2.9.4

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.