Skip to main content
0-Doubt
NewsInvestorsQuestionnairesDeveloperHelp
AnonymousSign in
0-Doubt — neutral IT/Security research
BrowseResellersCertified analystsRFI/RFP questionnairesHow trust worksHelp & FAQAPI
  1. Home/
  2. IP2Location/
  3. IP2Location Firewall IP List

IP2Location Firewall IP List

AI-generated from public sourcesAuto-generated by 0-Doubt from public vendor materials. Not verified by the vendor or an analyst. Check the freshness indicator.Lowest independence — unverified. A higher label means a more independent source — not a better product.How trust works →Secure coding rating: 0/100How this score is computedA product with no known CVEs starts at a neutral score and climbs the longer it goes without one; a product with known CVEs is penalized by severity instead. This one has 12 known CVEs (vendor-level match — see the CVE list below) and is tracked as ~39 days old in our catalog (a stand-in for real release date, which we don't track). The platform admin controls the formula's weights.

Generates geo-based firewall rules to block/allow traffic by country or ASN

by IP2Location · ip2location.com · source ↗

Known CVEs (12)About this listSourced from the public NVD database, matched by vendor name. Shown here at the vendor level — we don't track per-product/version data, so a listed CVE may affect a different product from this vendor, not necessarily this one. “New” means published within the last 30 days. “Actively exploited” means CISA's Known Exploited Vulnerabilities (KEV) catalog confirms real-world exploitation, not just a theoretical severity score.

RSS ⇢
  • CVE-2022-50961 ↗MEDIUM 6.42026

    WordPress Plugin IP2Location Country Blocker 2.26.7 contains a stored cross-site scripting vulnerability that allows authenticated users to inject arbitrary JavaScript code through the Frontend Settin…

  • CVE-2025-39455 ↗HIGH 7.12025

    Cross-Site Request Forgery (CSRF) vulnerability in IP2Location IP2Location Variables ip2location-variables allows Reflected XSS.This issue affects IP2Location Variables: from n/a through <= 2.9.5.

  • CVE-2025-32644 ↗HIGH 7.12025

    Cross-Site Request Forgery (CSRF) vulnerability in IP2Location IP2Location World Clock ip2location-world-clock allows Stored XSS.This issue affects IP2Location World Clock: from n/a through <= 1.1.9.

  • CVE-2025-1502 ↗MEDIUM 5.32025

    The IP2Location Redirection plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the 'download_ip2location_redirection_backup' AJAX action in all vers…

  • CVE-2025-1361 ↗HIGH 7.52025

    The IP2Location Country Blocker plugin for WordPress is vulnerable to Regular Information Exposure in all versions up to, and including, 2.38.8 due to missing capability checks on the admin_init() fun…

  • CVE-2025-24731 ↗MEDIUM 5.92025

    Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in IP2Location Download IP2Location Country Blocker ip2location-country-blocker allows Stored XSS.Thi…

  • CVE-2023-37865 ↗MEDIUM 5.32024

    Authentication Bypass by Spoofing vulnerability in IP2Location Download IP2Location Country Blocker allows Accessing Functionality Not Properly Constrained by ACLs.This issue affects Download IP2Locat…

  • CVE-2024-32443 ↗MEDIUM 4.32024

    Cross-Site Request Forgery (CSRF) vulnerability in IP2Location Download IP2Location Country Blocker.This issue affects Download IP2Location Country Blocker: from n/a through 2.34.2.

  • CVE-2024-22294 ↗MEDIUM 5.32024

    Exposure of Sensitive Information to an Unauthorized Actor vulnerability in IP2Location IP2Location Country Blocker.This issue affects IP2Location Country Blocker: from n/a through 2.33.3.

  • CVE-2021-25108 ↗HIGH 7.12022

    The IP2Location Country Blocker WordPress plugin before 2.26.6 does not have CSRF check in the ip2location_country_blocker_save_rules AJAX action, allowing attackers to make a logged in admin block ar…

  • CVE-2021-25096 ↗MEDIUM 6.52022

    The IP2Location Country Blocker WordPress plugin before 2.26.5 bans can be bypassed by using a specific parameter in the URL

  • CVE-2021-25095 ↗HIGH 7.12022

    The IP2Location Country Blocker WordPress plugin before 2.26.5 does not have authorisation and CSRF checks in the ip2location_country_blocker_save_rules AJAX action, allowing any authenticated users, …

Materials

0

No datasheets, whitepapers, case studies, videos, or demos linked yet.

Other Network Firewall (NGFW) products

see all →
  • AhnLab Network PLUS · AhnLab
  • Akamai Guardicore Segmentation · Akamai
  • Albarius · Albarius
  • AlgoSec AlgoBot · AlgoSec
  • AlgoSec Firewall Analyzer · AlgoSec
  • Allot Secure · Allot
  • Array ASI SSL Intercept · Array Networks
  • Barracuda Network Protection · Barracuda