Record summary

CVE-2002-1480 has a selected CVSS score of 6.8; EIP currently links 1 catalogued exploit.

Description

Cross-site scripting (XSS) vulnerability in phpGB before 1.20 allows remote attackers to inject arbitrary HTML or script into guestbook pages, which is executed when the administrator deletes the entry.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1

Proofs of concept

1

Catalogued exploits

ExploitDBphpGB 1.1 - HTML InjectionExploitDB exploitby ppp-designNot analyzed1 file
ExploitDB

PoC details

References

4