CVE-2006-2994

phazizGuestbook 2.0 - XSS

Title source: llm

Description

Multiple cross-site scripting (XSS) vulnerabilities in index.php in phazizGuestbook 2.0 allow remote attackers to inject arbitrary web script or HTML via the (1) name, (2) email, (3) url fields, and (4) text field (content parameter).

Scores

EPSS 0.0069
EPSS Percentile 71.6%

Classification

CWE
CWE-79
Status draft

Affected Products (1)

christian_becher/phazizguestbook

Timeline

Published Jun 13, 2006
Tracked Since Feb 18, 2026