Back

MEDIUM

Titan Anti-spam & Security < 7.3.1 - Protection Bypass due to IP Spoofing

Published Sep 16, 2022

Description

The Titan Anti-spam & Security WordPress plugin before 7.3.1 does not properly checks HTTP headers in order to validate the origin IP address, allowing threat actors to bypass it's block feature by spoofing the headers.

Affected products

Remediation

No remediation recorded yet.

References (2)

Change history (0)

No recorded changes yet.

Sources

CVE.org / MITRE

Status PUBLISHED
Assigner WPScan
Published Sep 16, 2022
Updated Aug 3, 2024
Reserved Aug 17, 2022

CISA Vulnrichment

No data

NVD

Status Modified
Modified Jun 17, 2026

Red Hat

No data

ENISA EUVD

Assigner WPScan
Published Sep 16, 2022
Updated Aug 3, 2024

GitHub

No data