Direct static code injection vulnerability in index.php in Limesoft Guestbook (LS Simple Guestbook) 1.0 allows remote malicious users to inject arbitrary PHP code into posts.txt via the message parameter.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
limesoft limesoft guestbook 1.0 |