WordPress Plugin Eventify-Simple Events npath Parameter Remote File Include - Vulnerability Database

WordPress Plugin Eventify-Simple Events npath Parameter Remote File Include

Critical
Reference: No Reference
Title: WordPress Plugin Eventify-Simple Events npath Parameter Remote File Include
Overview:

WordPress Plugin Eventify-Simple Events is prone to a remote file include vulnerability because it fails to sufficiently sanitize user-supplied input. Exploiting this issue may allow an attacker to compromise the application and the underlying system other attacks are also possible. WordPress Plugin Eventify-Simple Events version 1.7.g is vulnerable prior versions may also be affected.