Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
winn guestbook vulnerabilities and exploits
(subscribe to this query)
435
VMScore
CVE-2011-5026
Cross-site scripting (XSS) vulnerability in the addPost function in data/functions.php in Winn GuestBook prior to 2.4.8d allows remote malicious users to inject arbitrary web script or HTML via the name parameter to index.php. NOTE: some of these details are obtained from third p...
Winn Winn Guestbook
Winn Winn Guestbook 2.4.2
Winn Winn Guestbook 2.4.1
Winn Winn Guestbook 2.4.6
Winn Winn Guestbook 2.4.5
Winn Winn Guestbook 2.4.4
Winn Winn Guestbook 2.4.3
Winn Winn Guestbook 2.4.8b
Winn Winn Guestbook 2.4.7
1 EDB exploit
435
VMScore
CVE-2009-4678
Cross-site scripting (XSS) vulnerability in index.php in Winn Guestbook 2.4 allows remote malicious users to inject arbitrary web script or HTML via the PATH_INFO.
Winn Winn Guestbook 2.4
1 EDB exploit
505
VMScore
CVE-2009-4760
Winn ASP Guestbook 1.01 Beta stores sensitive information under the web root with insufficient access control, which allows remote malicious users to download a database via a direct request for data/guestbook.mdb.
Winn Asp Guestbook 1.01
1 EDB exploit
VMScore
CVSSv2
CVSSv3
VMScore
Recommendations:
blind SQL injection
SSRF
buffer overflow
CVE-2023-28952
CVE-2023-41822
CVE-2024-27956
CVE-2023-7028
CVE-2024-34447
CVE-2024-34460
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started