PT-2002-1753 · Myguestbook · Myguestbook

CVE-2002-0732

·

Publicado

2002-07-26

·

Atualizado

2024-02-14

CVSS v2.0

7.5

Alta

VetorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions MyGuestbook version 1.0
Description A cross-site scripting issue allows remote attackers to execute arbitrary script or inject HTML via fields such as user name or comments.
Recommendations For MyGuestbook version 1.0, consider validating and sanitizing user input in fields like user name and comments to prevent code injection. As a temporary workaround, restrict access to these fields until a patch is available.

Exploit

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2002-0732

Produtos afetados

Myguestbook