CVE-2007-1181
WebAPP before 0.9.9.5 passes (1) Unused Informations and (2) the username through Edit Profile forms, which has unknown impact and attack vectors.
Date published : 2007-02-28
http://www.securityfocus.com/bid/22563
http://www.web-app.org/cgi-bin/index.cgi?action=viewnews&id=250