ZeroHour

CVE-2022-1762

PoC
CVSS 3.1
7.5 high
EPSS
1%p67
Published
()
Modified
Description

The iQ Block Country WordPress plugin before 1.2.20 does not properly checks HTTP headers in order to validate the origin IP address, allowing threat actors to bypass it's block feature by spoofing the headers.

Vendors
webence
Products
iq block country
Ecosystems
WordPress
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N

In the news

No ingested article mentions this CVE yet.