Hogstorps Hogstorp Guestbook vulnerabilities
3 known vulnerabilities affecting hogstorps/hogstorp_guestbook.
Total CVEs
3
CISA KEV
0
Public exploits
1
Exploited in wild
0
Severity breakdown
MEDIUM3
Vulnerabilities
Page 1 of 1
CVE-2006-2771P3MEDIUMCVSS 6.4PoCv2.02006-06-02
CVE-2006-2771 [MEDIUM] CVE-2006-2771: admin/radera/tabort.asp in Hogstorps hogstorp guestbook 2.0 does not verify user credentials, which
admin/radera/tabort.asp in Hogstorps hogstorp guestbook 2.0 does not verify user credentials, which allows remote attackers to delete arbitrary posts via a modified delID parameter.
nvd
CVE-2006-2773P4MEDIUMCVSS 6.4v2.02006-06-02
CVE-2006-2773 [MEDIUM] CVE-2006-2773: admin/redigera/redigera2.asp in Hogstorps hogstorp Guestbook 2.0 does not verify user credentials, w
admin/redigera/redigera2.asp in Hogstorps hogstorp Guestbook 2.0 does not verify user credentials, which allows remote attackers to edit arbitrary posts via unspecified vectors. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
nvd
CVE-2006-2772P4MEDIUMCVSS 6.8v2.02006-06-02
CVE-2006-2772 [MEDIUM] CVE-2006-2772: Cross-site scripting (XSS) vulnerability in add.asp in Hogstorps hogstorp guestbook 2.0 allows remot
Cross-site scripting (XSS) vulnerability in add.asp in Hogstorps hogstorp guestbook 2.0 allows remote attackers to inject arbitrary web script or HTML via the (1) name, (2) email, and (3) headline parameters. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
nvd