7.5
CVSSv2

CVE-2007-1998

Published: 12/04/2007 Updated: 11/10/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Direct static code injection vulnerability in HIOX Guest Book (HGB) 4.0 allows remote malicious users to inject arbitrary PHP code via the Email field, which results in code execution through a direct request to gb.php.

Vulnerable Product Search on Vulmon Subscribe to Product

hiox india guest book 4.0

Exploits

+========================I=R=A=N============================+ HGB Version 40 =========================I=R=A=N============================= +========================I=R=A=N============================+ Author : Dj7xpl / Dj7xpl[at]Yahoo[dot]com =========================I=R=A=N============================= +============== ...