CVE-2023-0816

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
27/03/2023
Last modified:
19/02/2025

Description

The Formidable Forms WordPress plugin before 6.1 uses several potentially untrusted headers to determine the IP address of the client, leading to IP Address spoofing and bypass of anti-spam protections.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:strategy11:formidable_form_builder:*:*:*:*:*:wordpress:*:* 6.1 (excluding)