PT-2004-3034 · Allwebscripts · Allwebscripts Mysqlguest

Published

2004-12-31

·

Updated

2024-02-14

·

CVE-2004-2138

CVSS v2.0

6.8

Medium

VectorAV:N/AC:M/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions AllWebScripts MySQLGuest (affected versions not specified)
Description The issue is related to a cross-site scripting (XSS) vulnerability. This allows remote attackers to inject arbitrary HTML and PHP code via the Name, Email, Homepage, or Comments field.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Related Identifiers

CVE-2004-2138

Affected Products

Allwebscripts Mysqlguest