VYPR

Wwwguestbook

Sign in to watch

by Abczone.it

CVEs (2)

CVESevRiskCVSSEPSSKEVPublishedDescription
CVE-2005-14290.000.00May 3, 2005SQL injection vulnerability in login.asp in WWWguestbook 1.1 allows remote attackers to execute arbitrary SQL commands via the password parameter.
CVE-2004-24280.000.00Dec 31, 2004Abczone.it WWWguestbook 1.1 stores db/dbase.mdb under the web document root with insufficient access control, which allows remote attackers to obtain sensitive information such as the plaintext username and password.