Cross-site scripting vulnerability (XSS) in (1) admin_index.php, (2) admin_pass.php, (3) admin_modif.php, and (4) admin_suppr.php in MyGuestbook 3.0 allows remote attackers to execute arbitrary PHP code by modifying the location parameter to reference a URL on a remote web server that contains file.php via script injected into the pseudo, email, and message parameters.
Metrics
Affected Vendors & Products
References
History
No history.

Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-08T02:19:45.877Z
Reserved: 2005-11-16T00:00:00
Link: CVE-2003-1241

No data.

Status : Deferred
Published: 2003-12-31T05:00:00.000
Modified: 2025-04-03T01:03:51.193
Link: CVE-2003-1241

No data.