Description
WordPress Plugin SecuPress Pro is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently ban any IP. WordPress Plugin SecuPress Pro version 1.4.12 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 2.0 or latest
References
Related Vulnerabilities
WordPress Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2013-2202)
WordPress 3.8.x Multiple Vulnerabilities (3.8 - 3.8.12)
XWiki Incorrect Authorization Vulnerability (CVE-2023-32069)
YOURLS Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2011-3824)