CVE Vulnerabilities

CVE-2005-1404

Published: May 03, 2005 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

MyPHP Forum 1.0 allows remote attackers to spoof the username by modifying the (1) nbuser parameter to post.php or (2) sender parameter to privmsg.php.

Affected Software

NameVendorStart VersionEnd Version
Myphp_forumMyphp_forum1.0 (including)1.0 (including)
Myphp_forumMyphp_forum2.0 (including)2.0 (including)
Myphp_forumMyphp_forum3.0 (including)3.0 (including)

References