Description
The WPS Hide Login WordPress plugin before 1.9.16.4 does not prevent redirects to the login page via the auth_redirect WordPress function, allowing an unauthenticated visitor to access the hidden login page.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2024-47407 | The WPS Hide Login WordPress plugin before 1.9.16.4 does not prevent redirects to the login page via the auth_redirect WordPress function, allowing an unauthenticated visitor to access the hidden login page. |
References
History
Mon, 17 Mar 2025 16:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | cpe:2.3:a:wpserveur:wps_hide_login:-:*:*:*:*:wordpress:*:* | |
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: WPScan
Published:
Updated: 2025-08-27T12:00:54.025Z
Reserved: 2024-06-24T18:02:54.875Z
Link: CVE-2024-6289
Updated: 2024-08-01T21:33:05.447Z
Status : Modified
Published: 2024-07-15T06:15:02.413
Modified: 2025-03-17T16:15:23.660
Link: CVE-2024-6289
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD