Files
CVEs-PoC/2022/CVE-2022-1600.md
T
2025-09-29 21:09:30 +02:00

792 B

CVE-2022-1600

Description

The YOP Poll WordPress plugin before 6.4.3 prioritizes getting a visitor's IP from certain HTTP headers over PHP's REMOTE_ADDR, which makes it possible to bypass IP-based limitations to vote in certain situations.

POC

Reference

Github