Vulnerabilities > CVE-2007-1998 - Unspecified vulnerability in Hiox India Guest Book 4.0

047910
CVSS 0.0 - NONE
Attack vector
UNKNOWN
Attack complexity
UNKNOWN
Privileges required
UNKNOWN
Confidentiality impact
UNKNOWN
Integrity impact
UNKNOWN
Availability impact
UNKNOWN
hiox-india
exploit available

Summary

Direct static code injection vulnerability in HIOX Guest Book (HGB) 4.0 allows remote attackers to inject arbitrary PHP code via the Email field, which results in code execution through a direct request to gb.php.

Vulnerable Configurations

Part Description Count
Application
Hiox_India
1

Exploit-Db

descriptionHIOX GUEST BOOK (HGB) 4.0 Remote Code Execution Vulnerability. CVE-2007-1998. Webapps exploit for php platform
fileexploits/php/webapps/3697.txt
idEDB-ID:3697
last seen2016-01-31
modified2007-04-10
platformphp
port
published2007-04-10
reporterDj7xpl
sourcehttps://www.exploit-db.com/download/3697/
titleHIOX GUEST BOOK HGB 4.0 - Remote Code Execution Vulnerability
typewebapps