The All-In-One Security (AIOS) WordPress plugin before 5.0.8 is susceptible to IP Spoofing attacks, which can lead to bypassed security features (like IP blocks, rate limiting, brute force protection, and more).
History

Mon, 14 Apr 2025 19:15:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'poc', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


cve-icon MITRE

Status: PUBLISHED

Assigner: WPScan

Published:

Updated: 2025-04-14T18:38:47.786Z

Reserved: 2022-11-21T07:39:11.610Z

Link: CVE-2022-4097

cve-icon Vulnrichment

Updated: 2024-08-03T01:27:54.385Z

cve-icon NVD

Status : Modified

Published: 2022-12-12T18:15:13.233

Modified: 2025-04-14T19:15:33.620

Link: CVE-2022-4097

cve-icon Redhat

No data.