| ID | CVE-2024-0970 | ||||||
| Sažetak | This User Activity Tracking and Log WordPress plugin before 4.1.4 retrieves client IP addresses from potentially untrusted headers, allowing an attacker to manipulate its value. | ||||||
| Reference | |||||||
| CVSS |
|
||||||
| Pristup |
|
||||||
| Impact |
|
||||||
| CVSS vektor | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N | ||||||
| Zadnje važnije ažuriranje | 13-11-2025 - 21:15 | ||||||
| Objavljeno | 15-05-2025 - 20:15 |

