Security Advisory
CVE-2016-4793
7.5
HIGH
Vulnerability Description
The clientIp function in CakePHP 3.2.4 and earlier allows remote attackers to spoof their IP via the CLIENT-IP HTTP header.
Published Date
January 23, 2017
Official Source
NIST NVD Advisory