CVE-2024-3050
29.05.2024, 06:18
The Site Reviews WordPress plugin before 7.0.0 retrieves client IP addresses from potentially untrusted headers, allowing an attacker to manipulate its value. This may be used to bypass IP-based blockingEnginsight
Vendor | Product | Version |
---|---|---|
paul_ryley | site_reviews | 𝑥 < 7.0.0 |
geminilabs | site_reviews | 𝑥 < 7.0.0 |
𝑥
= Vulnerable software versions