Multiple cross-site scripting (XSS) vulnerabilities in addguest.cgi in Big Webmaster Guestbook Script 1.02 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) mail, (2) site, (3) city, (4) state, (5) country, and possibly (6) name fields, which are viewed via viewguest.cgi.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2006-05-05T19:00:00

Updated: 2018-10-18T14:57:01

Reserved: 2006-05-05T00:00:00


Link: CVE-2006-2231

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2006-05-05T19:02:00.000

Modified: 2018-10-18T16:38:46.897


Link: CVE-2006-2231

JSON object: View

cve-icon Redhat Information

No data.