Beta

Report

CGC Maintenance Mode <= 1.2 is vulnerable to IP Filtering Bypass vulnerability

Unauthenticated
Published
2024-03-27

The CGC Maintenance Mode plugin for WordPress is vulnerable to IP Address Spoofing in all versions up to, and including, 1.2 due to insufficient IP address validation. This makes it possible for unauthenticated attackers to spoof their IP address and bypass filtering.

CVSS

Score:3.7

Severity:Low

Version: 1.2

The plugin vendor has not patched this vulnerability at the moment.