Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Emile Van Elen

#40360de 53,635
6.8CVSS total
Vulnerabilidades · 1
PT-2004-2161
6.8
2004-12-15
Unknown · Advanced Guestbook · CVE-2004-1213
Name of the Vulnerable Software and Affected Versions: Advanced Guestbook versions 2.2 through 2.3.1 Description: The issue is related to a cross-site scripting (XSS) vulnerability. This allows remote attackers to inject arbitrary web script or HTML via the `entry` parameter in the index.php file. Recommendations: For Advanced Guestbook versions 2.2 through 2.3.1, consider restricting access to the index.php file until a fix is available, and avoid using the `entry` parameter in this file to minimize the risk of exploitation.