Security Advisory

CVE-2022-2877

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2022-09-16 08:40:37
Last updated 2024-08-03 00:52:59
Assigner WPScan
CVSS score not scored
State PUBLISHED

Description

The Titan Anti-spam & Security WordPress plugin before 7.3.1 does not properly checks HTTP headers in order to validate the origin IP address, allowing threat actors to bypass it's block feature by spoofing the headers.