Lucene search

K
prionPRIOn knowledge basePRION:CVE-2022-4746
HistoryJan 23, 2023 - 3:15 p.m.

Design/Logic Flaw

2023-01-2315:15:00
PRIOn knowledge base
www.prio-n.com
1
flaw design logic ip-based

0.001 Low

EPSS

Percentile

32.1%

The FluentAuth WordPress plugin before 1.0.2 prioritizes getting a visitor’s IP address from certain HTTP headers over PHP’s REMOTE_ADDR, which makes it possible to bypass the IP-based blocks set by the plugin.

CPENameOperatorVersion
fluentauthlt1.0.2

0.001 Low

EPSS

Percentile

32.1%

Related for PRION:CVE-2022-4746