Viewing 1 replies (of 1 total)
  • Plugin Author Minor

    (@minor)

    Hi @wibyo01,

    From my point of view – guys at patchstack.com just trying to earn some money from promoting their website/service.

    You should keep on mind this: Don’t publish your whitelisted IP addresses. I admit (and known this all the time) that If someone find whitelisted IP address, there is a way how to display login form instead of 403 error, but authorization (username and password) will be still needed to login.

    If I would “fix” reported issue it would be not possible to access login page behind CDN. Because of this, I will not create any “fix”.

    • This reply was modified 1 year, 6 months ago by Minor.
Viewing 1 replies (of 1 total)
  • The topic ‘SECURE ADMIN IS VULNERABLE’ is closed to new replies.