Defender Security <= 4.4.1 - IP Address Spoofing
2024-02-12 00:00
belugaStrategic Overview
StatusPatched in 4.4.2
Affected Version
<= 4.4.1CVSS6.5Medium
CVE
CVE-2024-25595Vulnerability Overview
The Defender Security – Malware Scanner, Login Security & Firewall plugin for WordPress is vulnerable to IP Address Spoofing in all versions up to, and including, 4.4.1 due to user-supplied HTTP headers as a primary method for IP retrieval. This makes it possible for unauthenticated attackers to bypass IP Address restrictions.
Technical Analysis
REMEDIATION: Update to version 4.4.2, or a newer patched version --- IDENTIFIER: CWE-693 (Protection Mechanism Failure) The product does not use or incorrectly uses a protection mechanism that provides sufficient defense against directed attacks against the product.
External References
Vulnerability data © Defiant, Inc., provided under the Wordfence Intelligence T&C