Vulnerability CVE-2022-1579


Published: 2022-11-21

Description:
The function check_is_login_page() uses headers for the IP check, which can be easily spoofed.

Type:

CWE-639

(Authorization Bypass Through User-Controlled Key)

 References:
https://wpscan.com/vulnerability/6f3d40fa-458b-44f0-9407-763e80b29668

Copyright 2026, cxsecurity.com

 

Back to Top