CVE-2009-0424

Cross-site scripting (XSS) vulnerability in sign1.php in AN Guestbook (ANG) before 0.7.7 allows remote attackers to inject arbitrary web script or HTML via the country parameter, which is not properly handled in (1) administrator/manage.php or (2) administrator/trash.php. NOTE: some of these details are obtained from third party information.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

OR cpe:2.3:a:an_guestbook:an_guestbook:0.7.1:*:*:*:*:*:*:*
cpe:2.3:a:an_guestbook:an_guestbook:0.7:*:*:*:*:*:*:*
cpe:2.3:a:an_guestbook:an_guestbook:0.3.4:*:*:*:*:*:*:*
cpe:2.3:a:an_guestbook:an_guestbook:0.3.3:*:*:*:*:*:*:*
cpe:2.3:a:an_guestbook:an_guestbook:2.0:*:*:*:*:*:*:*
cpe:2.3:a:an_guestbook:an_guestbook:1.5:*:*:*:*:*:*:*
cpe:2.3:a:an_guestbook:an_guestbook:1.2:*:*:*:*:*:*:*
cpe:2.3:a:an_guestbook:an_guestbook:0.4.5:*:*:*:*:*:*:*
cpe:2.3:a:an_guestbook:an_guestbook:0.4.1:*:*:*:*:*:*:*
cpe:2.3:a:an_guestbook:an_guestbook:3.0:*:*:*:*:*:*:*
cpe:2.3:a:an_guestbook:an_guestbook:2.2a:*:*:*:*:*:*:*
cpe:2.3:a:an_guestbook:an_guestbook:0.5:*:*:*:*:*:*:*
cpe:2.3:a:an_guestbook:an_guestbook:0.6:*:*:*:*:*:*:*
cpe:2.3:a:an_guestbook:an_guestbook:1.0:*:*:*:*:*:*:*
cpe:2.3:a:an_guestbook:an_guestbook:1.1:*:*:*:*:*:*:*
cpe:2.3:a:an_guestbook:an_guestbook:0.3.5:*:*:*:*:*:*:*
cpe:2.3:a:an_guestbook:an_guestbook:*:*:*:*:*:*:*:*
cpe:2.3:a:an_guestbook:an_guestbook:0.3.2:*:*:*:*:*:*:*
cpe:2.3:a:an_guestbook:an_guestbook:0.7.5:*:*:*:*:*:*:*
cpe:2.3:a:an_guestbook:an_guestbook:0.4:*:*:*:*:*:*:*
cpe:2.3:a:an_guestbook:an_guestbook:2.1:*:*:*:*:*:*:*
cpe:2.3:a:an_guestbook:an_guestbook:2.2:*:*:*:*:*:*:*
cpe:2.3:a:an_guestbook:an_guestbook:0.3.1:*:*:*:*:*:*:*

Information

Published : 2009-02-04 16:30

Updated : 2017-08-07 18:33


NVD link : CVE-2009-0424

Mitre link : CVE-2009-0424


JSON object : View

CWE
CWE-79

Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')

Advertisement

dedicated server usa

Products Affected

an_guestbook

  • an_guestbook