The Titan Anti-spam & Security WordPress plugin before 7.3.1 does not properly checks HTTP headers in order to validate the origin IP address, allowing threat actors to bypass it's block feature by spoofing the headers.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: WPScan
Published: 2022-09-16T08:40:37
Updated: 2024-08-03T00:52:59.794Z
Reserved: 2022-08-17T00:00:00
Link: CVE-2022-2877
Vulnrichment
No data.
NVD
Status : Modified
Published: 2022-09-16T09:15:11.137
Modified: 2024-11-21T07:01:51.383
Link: CVE-2022-2877
Redhat
No data.