Vulnerabilities
Vulnerable Software
Thewebforum:  Security Vulnerabilities
Cross-site scripting (XSS) vulnerability in register.php in TheWebForum (twf) 1.2.1 allows remote attackers to inject arbitrary web script or HTML via the www parameter.
CVSS Score
4.3
EPSS Score
0.01
Published
2006-01-09
SQL injection vulnerability in login.php in TheWebForum (twf) 1.2.1 allows remote attackers to execute arbitrary SQL commands and bypass login authentication via the username parameter (aka the u variable).
CVSS Score
7.5
EPSS Score
0.037
Published
2006-01-09


Contact Us

Shodan ® - All rights reserved