Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4hf8-pxr9-gc7w

Опубликовано: 22 июл. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

IP Login trusted forwarded client-IP headers without requiring a configured trusted proxy. Attackers could spoof the IP used for automatic login and potentially impersonate mapped accounts.

IP Login trusted forwarded client-IP headers without requiring a configured trusted proxy. Attackers could spoof the IP used for automatic login and potentially impersonate mapped accounts.

EPSS

Процентиль: 10%
0.00202
Низкий

7.5 High

CVSS3

Дефекты

CWE-290

Связанные уязвимости

CVSS3: 7.5
nvd
17 дней назад

Joomla Extension - regularlabs.com - IP spoofing vulnerability in IP login extension - IP Login trusted forwarded client-IP headers without requiring a configured trusted proxy. Attackers could spoof the IP used for automatic login and potentially impersonate mapped accounts.

EPSS

Процентиль: 10%
0.00202
Низкий

7.5 High

CVSS3

Дефекты

CWE-290