Description
WordPress Plugin SecuPress Pro is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently ban any IP. WordPress Plugin SecuPress Pro version 1.4.12 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 2.0 or latest
References
Related Vulnerabilities
ownCloud Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2014-9044)
WordPress Plugin User Access Manager Unspecified Vulnerability (1.2.6.9)
WordPress Plugin AWSM Team-Team Showcase Local File Inclusion (1.3.1)
WordPress Plugin Social Essentials-Social Stats and Sharing Buttons Cross-Site Scripting (1.3.1)