Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-222q-2853-6fvc

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

DeluxeBB 1.07 and earlier does not properly handle a username composed of a single space character, which allows remote authenticated users to login as the "space" user, post as the guest user, and block the ability of an administrator to ban the "space" user.

DeluxeBB 1.07 and earlier does not properly handle a username composed of a single space character, which allows remote authenticated users to login as the "space" user, post as the guest user, and block the ability of an administrator to ban the "space" user.

EPSS

Процентиль: 71%
0.00713
Низкий

Связанные уязвимости

nvd
почти 19 лет назад

DeluxeBB 1.07 and earlier does not properly handle a username composed of a single space character, which allows remote authenticated users to login as the "space" user, post as the guest user, and block the ability of an administrator to ban the "space" user.

EPSS

Процентиль: 71%
0.00713
Низкий