ASPJar Guestbook HTML Injection...

- AV AC AU C I A
发布: 2002-05-04
修订: 2025-04-13

ASPJar Advanced ASP Guestbook is prone to HTML injection attacks. It is possible for a malicious guestbook user to inject hostile HTML and script code into the guestbook via form fields. This code may be rendered in the browser of a web user who views the guestbook. In addition to this, an unauthenticated "delete" script allows removal of other guestbook entries.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息