Unknown · Advanced Guestbook · CVE-2004-1213
Name of the Vulnerable Software and Affected Versions:
Advanced Guestbook versions 2.2 through 2.3.1
Description:
The issue is related to a cross-site scripting (XSS) vulnerability. This allows remote attackers to inject arbitrary web script or HTML via the `entry` parameter in the index.php file.
Recommendations:
For Advanced Guestbook versions 2.2 through 2.3.1, consider restricting access to the index.php file until a fix is available, and avoid using the `entry` parameter in this file to minimize the risk of exploitation.