WebAPP before 0.9.9.5 passes (1) Unused Informations and (2) the username through Edit Profile forms, which has unknown impact and attack vectors.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Webapp | Web-app.org | 0.9.9 (including) | 0.9.9 (including) |
Webapp | Web-app.org | 0.9.9.1 (including) | 0.9.9.1 (including) |
Webapp | Web-app.org | 0.9.9.2 (including) | 0.9.9.2 (including) |
Webapp | Web-app.org | 0.9.9.2.1 (including) | 0.9.9.2.1 (including) |
Webapp | Web-app.org | 0.9.9.3 (including) | 0.9.9.3 (including) |
Webapp | Web-app.org | 0.9.9.3.1 (including) | 0.9.9.3.1 (including) |
Webapp | Web-app.org | 0.9.9.3.2 (including) | 0.9.9.3.2 (including) |
Webapp | Web-app.org | 0.9.9.4 (including) | 0.9.9.4 (including) |