CVE Database
/

CVE-2003-1241

Back to search

CVE-2003-1241

Published: Nov 16, 2005

Modified: Aug 8, 2024

PUBLISHED

Description

Cross-site scripting vulnerability (XSS) in (1) admin_index.php, (2) admin_pass.php, (3) admin_modif.php, and (4) admin_suppr.php in MyGuestbook 3.0 allows remote attackers to execute arbitrary PHP code by modifying the location parameter to reference a URL on a remote web server that contains file.php via script injected into the pseudo, email, and message parameters.

VendorProductVersions

n/a

n/a

affected
n/a

References

20030221 Myguestbook (PHP)
mailing-list
x_refsource_BUGTRAQ
6906
vdb-entry
x_refsource_BID
20030221 Myguestbook (PHP)
mailing-list
x_refsource_VULNWATCH

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now