CVE-2006-3568
Fantastic Guestbook - XSS
Title source: ruleDescription
Multiple cross-site scripting (XSS) vulnerabilities in guestbook.php in Fantastic Guestbook 2.0.1, and possibly earlier versions, allow remote attackers to inject arbitrary web script or HTML via the (1) first_name, (2) last_name, or (3) nickname parameters.
Exploits (1)
exploitdb
WRITEUP
VERIFIED
by omnipresent · textwebappsphp
https://www.exploit-db.com/exploits/28206
References (7)
Scores
EPSS
0.0084
EPSS Percentile
74.6%
Classification
CWE
CWE-79
Status
draft
Affected Products (1)
fantastic_guestbook_project/fantastic_guestbook
Timeline
Published
Jul 13, 2006
Tracked Since
Feb 18, 2026