Description
WordPress Plugin SecuPress Free-WordPress Security is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently ban any IP. WordPress Plugin SecuPress Free-WordPress Security version 1.4.13 is vulnerable; prior versions may also be affected.
Remediation
Update to plugin version 2.0 or latest
References
Related Vulnerabilities
WordPress Plugin Search & Replace PHP Object Injection (3.2.2)
XOOPS Other Vulnerability (CVE-2005-3680)
WordPress Plugin Testimonial Slider Multiple Cross-Site Scripting Vulnerabilities (1.2.5)
markdown-it Inefficient Regular Expression Complexity Vulnerability (CVE-2022-21670)
WordPress Plugin All Post Contact Form Arbitrary File Upload (1.1.4)