CVE-2006-3211

cjGuestbook <1.3 - XSS

Title source: llm

Description

Cross-site scripting (XSS) vulnerability in sign.php in cjGuestbook 1.3 and earlier allows remote attackers to inject Javascript code via a javascript URI in an img bbcode tag in the comments parameter.

Scores

EPSS 0.0071
EPSS Percentile 72.0%

Classification

CWE
CWE-79
Status draft

Affected Products (1)

cjguestbook_project/cjguestbook < 1.3

Timeline

Published Jun 24, 2006
Tracked Since Feb 18, 2026