Description
WordPress Plugin MailChimp for WooCommerce is prone to a local file inclusion vulnerability because it fails to sufficiently verify user-supplied input. Exploiting this issue may allow an attacker to obtain sensitive information that could aid in further attacks. WordPress Plugin MailChimp for WooCommerce version 2.1.1 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 2.1.2 or latest
References
Related Vulnerabilities
Oracle JRE CVE-2013-2383 Vulnerability (CVE-2013-2383)
WebLogic CVE-2021-35617 Vulnerability (CVE-2021-35617)
GlassFish Improper Input Validation Vulnerability (CVE-2011-5035)
WordPress Plugin SEO Ultimate 'wp-admin/post.php' Cross-Site Scripting (6.9.1)
WordPress Plugin Export any WordPress data to XML/CSV Arbitrary File Upload (0.9)