The DoLogin Security WordPress plugin before 3.7.1 does not restrict the access of a widget that shows the IPs of failed logins to low privileged users.
References
Link | Resource |
---|---|
https://wpscan.com/vulnerability/7eae1434-8c7a-4291-912d-a4a07b73ee56 | Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: WPScan
Published: 2023-10-16T19:39:19.260Z
Updated: 2023-10-16T19:39:19.260Z
Reserved: 2023-09-06T14:32:51.825Z
Link: CVE-2023-4800
JSON object: View
NVD Information
Status : Modified
Published: 2023-10-16T20:15:16.583
Modified: 2023-11-07T04:22:59.303
Link: CVE-2023-4800
JSON object: View
Redhat Information
No data.
CWE
No CWE.