CVE Vulnerabilities

CVE-2007-2093

Published: Apr 18, 2007 | Modified: Oct 16, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

Direct static code injection vulnerability in index.php in Limesoft Guestbook (LS Simple Guestbook) 1.0 allows remote attackers to inject arbitrary PHP code into posts.txt via the message parameter.

Affected Software

Name Vendor Start Version End Version
Limesoft_guestbook Limesoft 1.0 (including) 1.0 (including)

References