NA
CVSSv3

CVE-2006-2771

CVSSv4: NA | CVSSv3: NA | CVSSv2: 6.4 | VMScore: 740 | EPSS: 0.03396 | KEV: Not Included
Published: 02/06/2006 Updated: 21/11/2024

Vulnerability Summary

admin/radera/tabort.asp in Hogstorps hogstorp guestbook 2.0 does not verify user credentials, which allows remote malicious users to delete arbitrary posts via a modified delID parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

hogstorps hogstorp guestbook 2.0

Exploits

source: wwwsecurityfocuscom/bid/18205/info Hogstorps guestbook is prone to an access-authorization vulnerability The issue occurs because the affected script fails to prompt for authentication credentials An attacker can exploit this issue to delete and modify application data This could aid in further attacks on the affected compute ...