Логотип exploitDog
bind:CVE-2023-4549
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-4549

Количество 2

Количество 2

nvd логотип

CVE-2023-4549

больше 2 лет назад

The DoLogin Security WordPress plugin before 3.7 does not properly sanitize IP addresses coming from the X-Forwarded-For header, which can be used by attackers to conduct Stored XSS attacks via WordPress' login form.

CVSS3: 6.1
EPSS: Низкий
github логотип

GHSA-897r-hcfg-v9vh

больше 2 лет назад

The DoLogin Security WordPress plugin before 3.7 does not properly sanitize IP addresses coming from the X-Forwarded-For header, which can be used by attackers to conduct Stored XSS attacks via WordPress' login form.

CVSS3: 6.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-4549

The DoLogin Security WordPress plugin before 3.7 does not properly sanitize IP addresses coming from the X-Forwarded-For header, which can be used by attackers to conduct Stored XSS attacks via WordPress' login form.

CVSS3: 6.1
1%
Низкий
больше 2 лет назад
github логотип
GHSA-897r-hcfg-v9vh

The DoLogin Security WordPress plugin before 3.7 does not properly sanitize IP addresses coming from the X-Forwarded-For header, which can be used by attackers to conduct Stored XSS attacks via WordPress' login form.

CVSS3: 6.1
1%
Низкий
больше 2 лет назад

Уязвимостей на страницу