CRLF injection vulnerability in index.php in phpWebSite 0.9.3-4 allows remote malicious users to perform HTTP Response Splitting attacks to modify expected HTML content from the server via the block_username parameter in the user module.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
phpwebsite phpwebsite 0.9.3 |
||
phpwebsite phpwebsite 0.9.3.1 |
||
phpwebsite phpwebsite 0.9.3.2 |
||
phpwebsite phpwebsite 0.9.3.3 |
||
phpwebsite phpwebsite 0.9.3.4 |
||
phpwebsite phpwebsite 0.7.3 |
||
phpwebsite phpwebsite 0.8.2 |
||
phpwebsite phpwebsite 0.8.3 |