CVE-2022-1600

Publication date

2022-08-01 12:48:14

Family

WPScan

State

PUBLISHED

Description

The YOP Poll WordPress plugin before 6.4.3 prioritizes getting a visitors IP from certain HTTP headers over PHPs REMOTE_ADDR, which makes it possible to bypass IP-based limitations to vote in certain situations.