Ben's Guestbook HTML Injection...

- AV AC AU C I A
发布: 2003-12-09
修订: 2025-04-13

A vulnerability has been reported in the software that may allow a remote attacker to execute HTML and script code in a user's browser. The issue is reported to be present in the comments field of the application. The problem exists due to insufficient sanitization of user-supplied input. It may be possible for an attacker to include malicious HTML code in one of the vulnerable fields. The injected code could then be interpreted by the browser of a user visiting the vulnerable site.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息