CRLF injection vulnerability in users.php in Siteman 1.1.10 and earlier allows remote attackers to add arbitrary users and gain privileges via the line parameter in a docreate operation.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Siteman | Siteman | 1.1.9 (including) | 1.1.9 (including) |
Siteman | Siteman | 1.1.10 (including) | 1.1.10 (including) |