CVE-2020-13485
25.05.2020, 23:15
The Knock Knock plugin before 1.2.8 for Craft CMS allows IP Whitelist bypass via an X-Forwarded-For HTTP header.Enginsight
Vendor | Product | Version |
---|---|---|
verbb | knock_knock | 𝑥 < 1.2.8 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration