CVE-2005-2650 Information

Description

Cross-site scripting (XSS) vulnerability in sign.asp in Emefa Guestbook 1.2 allows remote attackers to inject arbitrary web script or HTML via the (1) name (2) location and (3) email parameters.

Reference

http://packetstormsecurity.org/0508-advisories/emefaGuest.txt http://secunia.com/advisories/16489 http://systemsecure.org/ssforum/viewtopic.php?t=91 http://www.emefa.myserver.org/comp/guestview.php http://www.securityfocus.com/bid/14599

Share on: