7.5
CVSSv2

CVE-2002-0732

Published: 12/08/2002 Updated: 14/02/2024
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Cross-site scripting vulnerability in MyGuestbook 1.0 allows remote malicious users to execute arbitrary script or inject HTML via fields such as (1) user name or (2) comments.

Vulnerable Product Search on Vulmon Subscribe to Product

levcgi.com myguestbook 1.0

Exploits

source: wwwsecurityfocuscom/bid/4651/info MyGuestbook is freely available guestbook software It will run on most Unix and Linux variants, as well as Microsoft Windows operating systems MyGuestbook does not adequately filter script code from various fields This may enable an attacker to inject script code which will be executed in the ...