Description
WordPress Plugin SecuPress Pro is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently ban any IP. WordPress Plugin SecuPress Pro version 1.4.12 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 2.0 or latest
References
Related Vulnerabilities
WordPress Plugin Unlimited Pop-Ups Multiple Cross-Site Scripting Vulnerabilities (1.4.3)
Joomla! Core 1.5.x Cross-Site Scripting (1.5.0 - 1.5.11)
WordPress Plugin My Calendar Cross-Site Scripting (2.3.28)
WordPress Plugin WP Fastest Cache Multiple Vulnerabilities (0.9.4)
Drupal Core 9.0.x Multiple Cross-Site Scripting Vulnerabilities (9.0.0 - 9.0.5)