Authentication vulnerability in User Activity Tracking and Log 4.1.3

A popular plugin for WordPress called User Activity Tracking and Log has a problem that could put your website at risk. This issue affects all versions, including the most recent one. Basically, the plugin doesn’t properly check the IP address of the person using it. This means that someone could trick the plugin into thinking they are using a different IP address than they actually are. This could allow them to do things on your website that will be logged under a different IP address.

Detected in:

User Activity Tracking and Log fixed vulnerable versions: >= * <= 4.1.3

This information is sourced from www.wpvulnerability.com. An open-source database of vulnerabilities maintained by the community. Help us out by submitting vulnerabilities!

Version compare shows which versions have a vulnerability. For example: >= 2.2.8 <= 2.2.21 means:

> from 2.2.8
= including 2.2.8 & 2.2.21
< to 2.2.21

Is this information incorrect? Please leave us a message.