CRLF injection vulnerability in users.php in Siteman 1.1.10 and earlier allows remote attackers to add arbitrary users and gain privileges via the line parameter in a docreate operation.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Siteman | Siteman | 1.1.9 (including) | 1.1.9 (including) |
| Siteman | Siteman | 1.1.10 (including) | 1.1.10 (including) |