CVE-2002-1410

Easy Guestbook - RCE

Title source: llm

Description

Easy Guestbook CGI programs do not authenticate the administrator, which allows remote attackers to (1) delete entries via direct access of admin.cgi, or (2) reconfigure Guestbook via direct access of config.cgi.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Arek Suroboyo · htmlwebappscgi
https://www.exploit-db.com/exploits/21659

Scores

EPSS 0.1151
EPSS Percentile 93.6%

Details

Status published
Products (2)
ben_chivers/ben_chivers_guestbook 1.0
easy_scripts_archive/easy_guestbook 1.0
Published Apr 11, 2003
Tracked Since Feb 18, 2026