CVE-2024-3050
29.05.2024, 06:18
The Site Reviews WordPress plugin before 7.0.0 retrieves client IP addresses from potentially untrusted headers, allowing an attacker to manipulate its value. This may be used to bypass IP-based blockingEnginsight
| Vendor | Product | Version |
|---|---|---|
| paul_ryley | site_reviews | 𝑥 < 7.0.0 |
| geminilabs | site_reviews | 𝑥 < 7.0.0 |
𝑥
= Vulnerable software versions