VYPR

Tinyguestbook

Sign in to watch

by Steveyolam

CVEs (2)

CVESevRiskCVSSEPSSKEVPublishedDescription
CVE-2011-52010.000.01Sep 23, 2012Multiple SQL injection vulnerabilities in sign.php in tinyguestbook allow remote attackers to execute arbitrary SQL commands via the (1) name and (2) msg parameters. NOTE: some of these details are obtained from third party information.
CVE-2011-51990.000.00Sep 23, 2012Cross-site scripting (XSS) vulnerability in sign.php in tinyguestbook allows remote attackers to inject arbitrary web script or HTML via the msg parameter.