VYPR
Vendor

Phpversion

Products
2
CVEs
3
Across products
3
Status
Private

Products

2

Recent CVEs

3
  • CVE-2025-57263HigSep 4, 2025
    risk 0.47cvss 7.2epss 0.00

    An authenticated SQL injection vulnerability in VX Guestbook 1.07 allows attackers with admin access to inject malicious SQL payloads via the "word" POST parameter in the words.php admin panel.

  • CVE-2008-7006Aug 19, 2009
    risk 0.04cvss epss 0.07

    Free PHP VX Guestbook 1.06 allows remote attackers to bypass authentication and download a backup of the database via a direct request to admin/backupdb.php.

  • CVE-2008-7007Aug 19, 2009
    risk 0.03cvss epss 0.03

    Free PHP VX Guestbook 1.06 allows remote attackers to bypass authentication and gain administrative access by setting the (1) admin_name and (2) admin_pass cookie values to 1.