Security Advisory

CVE-2016-4793

7.5
HIGH

Vulnerability Description

The clientIp function in CakePHP 3.2.4 and earlier allows remote attackers to spoof their IP via the CLIENT-IP HTTP header.
Published Date January 23, 2017
Official Source NIST NVD Advisory