Cross-site scripting (XSS) vulnerability in AWSguest.php in AllWebScripts MySQLGuest allows remote attackers to inject arbitrary HTML and PHP code via the (1) Name, (2) Email, (3) Homepage or (4) Comments field.
References
Configurations
History
20 Nov 2024, 23:52
Type | Values Removed | Values Added |
---|---|---|
References | () http://securitytracker.com/id?1011376 - | |
References | () http://www.computerknights.org/forum_viewtopic.php?2.122 - Exploit, URL Repurposed | |
References | () http://www.securityfocus.com/bid/11234 - | |
References | () https://exchange.xforce.ibmcloud.com/vulnerabilities/17462 - |
14 Feb 2024, 01:17
Type | Values Removed | Values Added |
---|---|---|
References | () http://www.computerknights.org/forum_viewtopic.php?2.122 - Exploit, URL Repurposed |
Information
Published : 2004-12-31 05:00
Updated : 2024-11-20 23:52
NVD link : CVE-2004-2138
Mitre link : CVE-2004-2138
CVE.ORG link : CVE-2004-2138
JSON object : View
Products Affected
allwebscripts
- mysqlguest
CWE