Input validation vulnerability in WordPress Manutenção 1.0.6

There is a problem with the WordPress Manutenção plugin for WordPress. It can be accessed by people pretending to have a different IP address. This can happen in all versions up to and including 1.0.6. This is because the plugin does not check IP addresses carefully enough. This means that people who are not logged in can get past the plugin’s maintenance mode by using the ‘X-Forwarded-For’ HTTP header.

Detected in:

WordPress Manutenção fixed vulnerable versions: >= * <= 1.0.6

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.