CVE-2008-6934 Information
Feb 14, 2021
cve
Description
Static code injection vulnerability in Sanus|artificium (aka Sanusart) Free simple guestbook PHP script when downloaded before 20081111 allows remote attackers to inject arbitrary PHP code into messages.txt via the message parameter to act.php which is executed when guestbook/guestbook.php is accessed. NOTE: some of these details are obtained from third party information.
Reference
http://osvdb.org/49703 http://secunia.com/advisories/32643 http://www.sanusart.com/news.php http://www.securityfocus.com/bid/32240 http://www.vupen.com/english/advisories/2008/3095 https://exchange.xforce.ibmcloud.com/vulnerabilities/46526 https://www.exploit-db.com/exploits/7079
Share on: