NA

CVE-2022-4746

Published: 23/01/2023 Updated: 07/11/2023
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

The FluentAuth WordPress plugin prior to 1.0.2 prioritizes getting a visitor's IP address from certain HTTP headers over PHP's REMOTE_ADDR, which makes it possible to bypass the IP-based blocks set by the plugin.

Vulnerable Product Search on Vulmon Subscribe to Product

wpmanageninja fluentauth