CVE-2006-3211
cjGuestbook <1.3 - XSS
Title source: llmDescription
Cross-site scripting (XSS) vulnerability in sign.php in cjGuestbook 1.3 and earlier allows remote attackers to inject Javascript code via a javascript URI in an img bbcode tag in the comments parameter.
References (6)
Scores
EPSS
0.0071
EPSS Percentile
72.0%
Classification
CWE
CWE-79
Status
draft
Affected Products (1)
cjguestbook_project/cjguestbook
< 1.3
Timeline
Published
Jun 24, 2006
Tracked Since
Feb 18, 2026