Security Advisory

CVE-2024-0970

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2025-05-15 20:09:32
Last updated 2025-11-13 21:07:50
Assigner WPScan
State PUBLISHED

Description

This User Activity Tracking and Log WordPress plugin before 4.1.4 retrieves client IP addresses from potentially untrusted headers, allowing an attacker to manipulate its value.