Wordpress Multiple Third Party Plugins Multiple Vulnerabilities
Description
(#Multiple vulnerabilities have been identified in plugins for Wordpress:#- My Category Order : post authentication cross-site scripting#- Easy Table : post authentication cross-site scripting#- WP Google Fonts : post authentication cross-site scripting#- Social Bookmarking Light : post authentication cross-site scripting#- Category Order and Taxonomy Terms Order : post authentication cross-site scripting#- My Page Order : post authentication cross-site scripting#- Display Widgets : post authentication cross-site scripting#- AddThis Sharing Buttons : post authentication cross-site scripting#- All In One WP Security & Firewall : post authentication cross-site scripting#- Duplicator : post authentication cross-site scripting#- CKEditor : post authentication cross-site scripting#- Pretty Link Lite : post authentication SQL injection#- SEO SearchTerms Tagging : post authentication SQL injection#- Contact Form Builder : post authentication SQL injection#- Slider : post authentication SQL injection#- 404 to 301 : post authentication SQL injection#- Master Slider : post authentication SQL injection#- RSS Multi Importer : injection SQL et post authentication cross-site scripting#- Tribulant Slideshow Gallery : arbitrary files upload and cross-site scripting#- Add Link to Facebook : post authentication cross-site scripting#- Floating Social Media Icon : post authentication cross-site scripting#- JW Player 6 : post authentication cross-site scripting#- Google Language Translator : post authentication cross-site scripting#- Dynamic Widgets : post authentication cross-site scripting#- WP-Client : stored cross-site scripting.##A proof-of-concept exists for the WP-Client vulnerability.)