Vulnerabilities > AN Guestbook

DATE CVE VULNERABILITY TITLE RISK
2009-06-26 CVE-2009-2224 Path Traversal vulnerability in AN Guestbook AN Guestbook 0.7.8
Directory traversal vulnerability in ang/shared/flags.php in AN Guestbook 0.7.8, when register_globals is enabled, allows remote attackers to read arbitrary files via a ..
4.3
2009-02-05 CVE-2009-0424 Cross-Site Scripting vulnerability in AN Guestbook AN Guestbook
Cross-site scripting (XSS) vulnerability in sign1.php in AN Guestbook (ANG) before 0.7.7 allows remote attackers to inject arbitrary web script or HTML via the country parameter, which is not properly handled in (1) administrator/manage.php or (2) administrator/trash.php.
4.3