CVE-2023-37865

Authentication Bypass by Spoofing vulnerability in IP2Location Download IP2Location Country Blocker allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Download IP2Location Country Blocker: from n/a through 2.29.1.
CVSS

No CVSS.

Configurations

Configuration 1 (hide)

cpe:2.3:a:ip2location:country_blocker:*:*:*:*:*:wordpress:*:*

History

12 Aug 2025, 14:27

Type Values Removed Values Added
CWE CWE-290
CPE cpe:2.3:a:ip2location:country_blocker:*:*:*:*:*:wordpress:*:*
First Time Ip2location
Ip2location country Blocker
References () https://patchstack.com/database/vulnerability/ip2location-country-blocker/wordpress-ip2location-country-blocker-plugin-2-29-1-ip-bypass-vulnerability-vulnerability?_s_id=cve - () https://patchstack.com/database/vulnerability/ip2location-country-blocker/wordpress-ip2location-country-blocker-plugin-2-29-1-ip-bypass-vulnerability-vulnerability?_s_id=cve - Third Party Advisory

04 Jun 2024, 07:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-06-04 07:15

Updated : 2025-08-12 14:27


NVD link : CVE-2023-37865

Mitre link : CVE-2023-37865


JSON object : View

Products Affected

ip2location

  • country_blocker
CWE

No CWE.