CVE-2006-0706
Gastebuch < 1.3.2 - XSS
Title source: ruleDescription
Cross-site scripting vulnerability in eintrag.php in Gästebuch (Gastebuch) before 1.3.3 allows remote attackers to inject arbitrary web script or HTML via the URL, which is used in the homepage parameter.
Exploits (1)
exploitdb
WRITEUP
VERIFIED
by Micha Borrmann · textwebappsphp
https://www.exploit-db.com/exploits/27209
References (6)
Scores
EPSS
0.0525
EPSS Percentile
89.8%
Classification
CWE
CWE-79
Status
draft
Affected Products (1)
gastebuch/gastebuch
< 1.3.2
Timeline
Published
Feb 15, 2006
Tracked Since
Feb 18, 2026