Vulnerabilities > CVE-2006-2771 - Unspecified vulnerability in Hogstorps Hogstorp Guestbook 2.0

047910
CVSS 6.4 - MEDIUM
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
hogstorps
exploit available

Summary

admin/radera/tabort.asp in Hogstorps hogstorp guestbook 2.0 does not verify user credentials, which allows remote attackers to delete arbitrary posts via a modified delID parameter.

Vulnerable Configurations

Part Description Count
Application
Hogstorps
1

Exploit-Db

descriptionHogstorps Guestbook 2.0 Unauthorized Access Vulnerability. CVE-2006-2771. Webapps exploit for asp platform
idEDB-ID:27932
last seen2016-02-03
modified2006-05-01
published2006-05-01
reporteromnipresent
sourcehttps://www.exploit-db.com/download/27932/
titleHogstorps Guestbook 2.0 Unauthorized Access Vulnerability