PHP-Post allows remote attackers to spoof the names of other users by registering with a username containing hex-encoded characters.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Php-post_web_forum | Php-post | 0.1 (including) | 0.1 (including) |
Php-post_web_forum | Php-post | 0.2 (including) | 0.2 (including) |
Php-post_web_forum | Php-post | 0.3 (including) | 0.3 (including) |
Php-post_web_forum | Php-post | 0.21 (including) | 0.21 (including) |
Php-post_web_forum | Php-post | 0.22 (including) | 0.22 (including) |
Php-post_web_forum | Php-post | 0.32 (including) | 0.32 (including) |