Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hjr6-c9j9-3f8g

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

include/class_poll.php in Advanced Poll 2.0.4 uses the HTTP_X_FORWARDED_FOR (X-Forwarded-For HTTP header) to identify the IP address of a client, which makes it easier for remote attackers to spoof the source IP and bypass voting restrictions.

include/class_poll.php in Advanced Poll 2.0.4 uses the HTTP_X_FORWARDED_FOR (X-Forwarded-For HTTP header) to identify the IP address of a client, which makes it easier for remote attackers to spoof the source IP and bypass voting restrictions.

EPSS

Процентиль: 70%
0.0064
Низкий

Связанные уязвимости

nvd
почти 20 лет назад

include/class_poll.php in Advanced Poll 2.0.4 uses the HTTP_X_FORWARDED_FOR (X-Forwarded-For HTTP header) to identify the IP address of a client, which makes it easier for remote attackers to spoof the source IP and bypass voting restrictions.

EPSS

Процентиль: 70%
0.0064
Низкий