Direct static code injection vulnerability in HIOX Guest Book (HGB) 4.0 allows remote attackers to inject arbitrary PHP code via the Email field, which results in code execution through a direct request to gb.php.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Guest_book | Hiox_india | 4.0 (including) | 4.0 (including) |