← Back to CVE List

CVE-2023-5133

Published: 2023-10-16T20:15Z
Last Modified: 2024-11-21T08:41Z
Source: MITRE CVE List
License: MITRE-CVE-TOS
This user-activity-log-pro WordPress plugin before 2.3.4 retrieves client IP addresses from potentially untrusted headers, allowing an attacker to manipulate its value. This may be used to hide the source of malicious traffic. > MITRE Terms of Use apply – see LICENSE‑MITRE.txt