CVE-2010-0940 Information

Description

Cross-site scripting (XSS) vulnerability in guestbook.php in Simple PHP Guestbook 1.0 allows remote attackers to inject arbitrary web script or HTML via the action parameter.

Reference

http://osvdb.org/61614 http://packetstormsecurity.org/1001-exploits/simplephpgb-xss.txt http://secunia.com/advisories/38053 http://www.exploit-db.com/exploits/11077 https://exchange.xforce.ibmcloud.com/vulnerabilities/55522

Share on: