Lucene search

K
wpvulndbWpvulndbWPVDB-ID:11014837-5F56-4D6D-82AD-7FD65096E4F8
HistoryDec 01, 2023 - 12:00 a.m.

Restricted Site Access <= 7.4.1 - IP Spoofing to Protection Mechanism Bypass

2023-12-0100:00:00
wpscan.com
3
wordpress
ip address spoofing
vulnerability
restricted site access

7 High

AI Score

Confidence

Low

0.0004 Low

EPSS

Percentile

9.0%

Description The Restricted Site Access plugin for WordPress is vulnerable to IP Address Spoofing in versions up to, and including, 6.3.0. This is due to insufficient restrictions on where the IP Address information is being retrieved for user IP Addresses. This makes it possible for attackers to gain access to areas of the site that may have been restricted.

7 High

AI Score

Confidence

Low

0.0004 Low

EPSS

Percentile

9.0%

Related for WPVDB-ID:11014837-5F56-4D6D-82AD-7FD65096E4F8