Admin and Site Enhancements
cpe:2.3:a:wpase:admin_and_site_enhancements:*:*:*:*:wordpress:*:*
- < 7.6.10
A vulnerability in the Admin and Site Enhancements (ASE) WordPress plugin, affecting versions prior to 7.6.10, allows attackers to bypass the login limit feature. This is achieved by manipulating client IP addresses through untrusted headers, enabling the exploitation of the login limit functionality.
Exploitation of this vulnerability allows for bypassing the login limit feature, potentially leading to brute force attacks.
Users can update to Admin and Site Enhancements WordPress plugin version 7.6.10 or later to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.