Description
WordPress Plugin WP Limit Login Attempts is prone to a security bypass vulnerability. Exploiting this issue may allow attackers to perform otherwise restricted actions and subsequently bypass the IP-based restrictions on login forms. WordPress Plugin WP Limit Login Attempts version 2.6.4 is vulnerable; prior versions may also be affected.
Remediation
Disable and remove the plugin until a fix is available
References
Related Vulnerabilities
Oracle Database Server CVE-2007-2116 Vulnerability (CVE-2007-2116)
WordPress Plugin Affiliate Link Manager Cross-Site Scripting (2.1.1)
PHP CVE-2013-7345 Vulnerability (CVE-2013-7345)
XWikiplatform Missing Authorization Vulnerability (CVE-2024-37898)
Joomla! Core 3.x.x Multiple Cross-Site Request Forgery Vulnerabilities (3.0.0 - 3.9.14)