CVE-2006-3796

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
24/07/2006
Last modified:
03/04/2025

Description

DeluxeBB 1.07 and earlier does not properly handle a username composed of a single space character, which allows remote authenticated users to login as the "space" user, post as the guest user, and block the ability of an administrator to ban the "space" user.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:deluxebb:deluxebb:*:*:*:*:*:*:*:* 1.07 (including)