WordPress Global Content Blocks PHP Code Execution and Information Disclosure Vulnerabilities
8 Aug. 2012
Summary
Global Content Blocks is prone to multiple security vulnerabilities, including a remote PHP code-execution vulnerability and multiple information-disclosure vulnerability.
Vulnerable Systems:
*WordPress Global Content Blocks PHP Code Execution and Information Disclosure Vulnerabilities
Successful exploits of these issues may allow remote attackers to execute arbitrary malicious PHP code in the context of the application or obtain potentially sensitive information.
Global Content Blocks 1.5.1 is vulnerable; other versions may also be affected.
Vendor Status:
Currently we are not aware of any vendor-supplied patches