CVE-2023-4631

MEDIUM

DoLogin Security WP <3.7 - Info Disclosure

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2023-4631. PoCs published by b0marek.

AI-analyzed exploit summary This repository provides a detailed technical description of CVE-2023-4631, an IP address spoofing vulnerability in the DoLogin Security plugin for WordPress. It explains the root cause, steps to reproduce, and references external sources for further validation.

Description

The DoLogin Security WordPress plugin before 3.7 uses headers such as the X-Forwarded-For to retrieve the IP address of the request, which could lead to IP spoofing.

Exploits (1)

nomisec WRITEUP
by b0marek · poc
https://github.com/b0marek/CVE-2023-4631

This repository provides a detailed technical description of CVE-2023-4631, an IP address spoofing vulnerability in the DoLogin Security plugin for WordPress. It explains the root cause, steps to reproduce, and references external sources for further validation.

Classification
Writeup 90%
Attack Type
Auth Bypass
Complexity
Trivial
Reliability
Reliable
Target: DoLogin Security plugin for WordPress (versions up to and including 3.6)
No auth needed
Prerequisites: Ability to send HTTP requests with custom headers (X-Forwarded-For)
MITRE ATT&CK
devstral-2 · analyzed Feb 18, 2026 Full analysis →

References (1)

Core 1
Core References
Exploit, Third Party Advisory exploit vdb-entry technical-description
https://wpscan.com/vulnerability/28613fc7-1400-4553-bcc3-24df1cee418e

Scores

CVSS v3 5.3
EPSS 0.0062
EPSS Percentile 45.1%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N

CISA SSVC

Vulnrichment
Exploitation poc
Automatable yes
Technical Impact partial

Details

Status published
Products (2)
wpdo/dologin_security < 3.7
wpdo5ea/dologin_security < 3.7
Published Sep 25, 2023
Tracked Since Feb 18, 2026