Unrated severityNVD Advisory· Published Jan 5, 2004· Updated Jun 16, 2026
CVE-2003-0979
CVE-2003-0979
Description
FreeScripts VisitorBook LE (visitorbook.pl) does not properly escape line breaks in input, which allows remote attackers to (1) use VisitorBook as an open mail relay, when $mailuser is 1, via extra headers in the email field, or (2) cause the guestbook database to be deleted via a large number of line breaks that exceeds the $max_posts variable.
Affected products
2cpe:2.3:a:freescripts:visitorbook:le:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:freescripts:visitorbook:le:*:*:*:*:*:*:*
- (no CPE)
Patches
Vulnerability mechanics
References
2- www.westpoint.ltd.uk/advisories/wp-03-0001.txtnvdPatchVendor Advisory
- marc.infonvd
News mentions
0No linked articles in our index yet.