CVE-2006-0706

Gastebuch < 1.3.2 - XSS

Title source: rule

Description

Cross-site scripting vulnerability in eintrag.php in Gästebuch (Gastebuch) before 1.3.3 allows remote attackers to inject arbitrary web script or HTML via the URL, which is used in the homepage parameter.

Exploits (1)

exploitdb WRITEUP VERIFIED
by Micha Borrmann · textwebappsphp
https://www.exploit-db.com/exploits/27209

Scores

EPSS 0.0525
EPSS Percentile 89.8%

Classification

CWE
CWE-79
Status draft

Affected Products (1)

gastebuch/gastebuch < 1.3.2

Timeline

Published Feb 15, 2006
Tracked Since Feb 18, 2026