Wordpress Multiple Third Party Plugins Multiple Vulnerabilities
Description
(#Several vulnerabilities have been identified in third party plugins for WordPress:#- EZ Google Analytics: cross-site scripting in the "ezga_settings_array[tracking_id]" variable. To exploit this vulnerability, the attacker must be connected to the administration interface#- EZ Portfolio: cross-site scripting in the "ez_[2-6]col_width" variables#- DukaPress: cross-site scripting in several parameters. To exploit this vulnerability, the attacker must be connected to the administration panel#- Ajax Load More: arbitrary file upload in the "admin-ajax.php" page#- Visual Composer: cross-site scripting#- AlertWire: information disclosure in the "/wp-content/plugins/alertwire/alertwire.php" page displaying the absolute path of the page when an error occurs##Proof of concept are available.#Updated, 06/11/2015:#An exploitation code has been added to the Metasploit framework for the Ajax Load More vulnerability.)