Vulnerabilities > CVE-2002-1729 - HTML Injection vulnerability in Aspjar Guestbook 1.0

047910
CVSS 6.8 - MEDIUM
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
aspjar

Summary

Cross-site scripting vulnerability (XSS) in ASPjar Guestbook 1.00 allows remote attackers to execute arbitrary script as other users via the "web site" parameter in a guestbook message.

Vulnerable Configurations

Part Description Count
Application
Aspjar
1