Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

@lex Guestbook Multiple Input Validation Vulnerabilities

@lex Guestbook is prone to multiple input-validation vulnerabilities because the application fails to properly sanitize user-supplied input.

An attacker could exploit these issues to execute server-side script code, compromise the application, access or modify data, or exploit latent vulnerabilities in the underlying database implementation. Information gained could aid in further attacks.

@lex Guestbook 4.0.2 and prior versions are vulnerable to these issues.

NOTE: The vendor refutes these issues, stating that the vulnerabilities do not exist as specified.







 

Privacy Statement
Copyright 2009, SecurityFocus