Record summary

CVE-2007-2093 has a selected CVSS score of 7.5; EIP currently links 1 catalogued exploit.

Description

Direct static code injection vulnerability in index.php in Limesoft Guestbook (LS Simple Guestbook) 1.0 allows remote attackers to inject arbitrary PHP code into posts.txt via the message parameter.

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1

Proofs of concept

1

Catalogued exploits

ExploitDBLS Simple Guestbook 1.0 - Remote Code ExecutionExploitDB exploitby GammaraysNot analyzed1 file

linked to 2 vulnerabilities

ExploitDB

PoC details

References

8