6.4
CVSSv2

CVE-2006-2771

Published: 02/06/2006 Updated: 20/07/2017
CVSS v2 Base Score: 6.4 | Impact Score: 4.9 | Exploitability Score: 10
VMScore: 645
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:P

Vulnerability Summary

admin/radera/tabort.asp in Hogstorps hogstorp guestbook 2.0 does not verify user credentials, which allows remote malicious users to delete arbitrary posts via a modified delID parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

hogstorps hogstorp guestbook 2.0

Exploits

source: wwwsecurityfocuscom/bid/18205/info Hogstorps guestbook is prone to an access-authorization vulnerability The issue occurs because the affected script fails to prompt for authentication credentials An attacker can exploit this issue to delete and modify application data This could aid in further attacks on the affected compute ...