CVE-2008-2414

Aguestbook AN Guestbook - XSS

Title source: rule

Description

Cross-site scripting (XSS) vulnerability in send_email.php in AN Guestbook (ANG) 0.4 allows remote attackers to inject arbitrary web script or HTML via the postid parameter.

Exploits (1)

exploitdb WRITEUP VERIFIED
by ZoRLu · textwebappsphp
https://www.exploit-db.com/exploits/31803

Scores

EPSS 0.0031
EPSS Percentile 53.4%

Classification

CWE
CWE-79
Status draft

Affected Products (1)

aguestbook/an_guestbook

Timeline

Published May 22, 2008
Tracked Since Feb 18, 2026