PHP-Post allows remote attackers to spoof the names of other users by registering with a username containing hex-encoded characters.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Php-post_web_forum | Php-post | 0.1 | 0.1 |
Php-post_web_forum | Php-post | 0.2 | 0.2 |
Php-post_web_forum | Php-post | 0.3 | 0.3 |
Php-post_web_forum | Php-post | 0.21 | 0.21 |
Php-post_web_forum | Php-post | 0.22 | 0.22 |
Php-post_web_forum | Php-post | 0.32 | 0.32 |