Vulnerabilities (CVE)

Filtered by vendor Comscripts Subscribe
Filtered by product Cs Guestbook
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2007-4937 1 Comscripts 1 Cs Guestbook 2024-02-04 5.0 MEDIUM N/A
CS Guestbook stores sensitive information under the web root with insufficient access control, which allows remote attackers to obtain the admin name and MD5 password hash via a direct request for base/usr/0.php.