PT-2002-1753 · Myguestbook · Myguestbook

Published

2002-07-26

·

Updated

2024-02-14

·

CVE-2002-0732

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions MyGuestbook version 1.0
Description A cross-site scripting issue allows remote attackers to execute arbitrary script or inject HTML via fields such as user name or comments.
Recommendations For MyGuestbook version 1.0, consider validating and sanitizing user input in fields like user name and comments to prevent code injection. As a temporary workaround, restrict access to these fields until a patch is available.

Exploit

Fix

Related Identifiers

CVE-2002-0732

Affected Products

Myguestbook