WordPress Plugin Vulnerabilities
Formidable Forms < 6.1 - IP Spoofing
Description
The plugin uses several potentially untrusted headers to determine the IP address of the client, leading to IP Address spoofing and bypass of anti-spam protections.
Proof of Concept
Affects Plugins
References
CVE
Miscellaneous
Original Researcher
Daniel Ruf
Submitter
Daniel Ruf
Submitter website
Verified
Yes
WPVDB ID
Timeline
Publicly Published
2023-03-06 (about 2 years ago)
Added
2023-03-06 (about 2 years ago)
Last Updated
2023-03-06 (about 2 years ago)