Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hxjp-f6cv-xgr2

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The displaypost function in cgi-bin/cgi-lib/forum_display.pl in web-app.org WebAPP before 0.9.9.7 does not display usernames in conjunction with real names, which makes it easier for remote authenticated users to impersonate other users.

The displaypost function in cgi-bin/cgi-lib/forum_display.pl in web-app.org WebAPP before 0.9.9.7 does not display usernames in conjunction with real names, which makes it easier for remote authenticated users to impersonate other users.

EPSS

Процентиль: 63%
0.00445
Низкий

Связанные уязвимости

nvd
больше 18 лет назад

The displaypost function in cgi-bin/cgi-lib/forum_display.pl in web-app.org WebAPP before 0.9.9.7 does not display usernames in conjunction with real names, which makes it easier for remote authenticated users to impersonate other users.

EPSS

Процентиль: 63%
0.00445
Низкий