• cyaniccypher

    (@cyaniccypher)


    I recently did a PCI DSS scan on the website and the following was the only identified vulnrability. Can this plug in help me close it?

    If yes, please let me know what I need to do. Thanks.

    The page I need help with: [log in to see the link]

Viewing 3 replies - 1 through 3 (of 3 total)
  • Plugin Support wfpeter

    (@wfpeter)

    Hi @cyaniccypher,

    The host IP resolves to GoDaddy so if they’re your host, you should ask them if it’s something you should be concerned about. Any traffic stopped by a network firewall wouldn’t reach the site and therefore be stopped before Wordfence sees it, so if anything is making it through Wordfence could stop it if the actions are seen as malicious.

    This is not a WordPress plugin vulnerability CVE, and Wordfence as an endpoint firewall loads after PHP, but before the rest of WordPress (when in “Extended Protection” mode). The plugin is designed for defense in depth by giving you a layered approach to security with our range of features, so making sure your network firewall is also secure will assist with that.

    Thanks,
    Peter.

    Thread Starter cyaniccypher

    (@cyaniccypher)

    I already spoke with godaddy, and since i have a managed hosting plane where resources and shared between multiple website they cannot do anything about it.

    I am looking for a way to close the vulnerability with a firewall plugin, Please confirm if you plugin will be able to do this.

    Thread Starter cyaniccypher

    (@cyaniccypher)

    Please confirm if your product will resolve this issue or not?

Viewing 3 replies - 1 through 3 (of 3 total)

The topic ‘PCI DSS Scan Failed’ is closed to new replies.