First published: Tue Apr 11 2006(Updated: )
Cross-site scripting (XSS) vulnerability in Matt Wright Guestbook 2.3.1 allows remote attackers to execute arbitrary web script or HTML via the (1) Your Name, (2) E-Mail, or (3) Comments fields when posting a message.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Matt Wright Guestbook | <=2.3.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-1697 has a moderate severity level due to its cross-site scripting (XSS) vulnerability.
To fix CVE-2006-1697, upgrade Matt Wright Guestbook to a newer version that addresses this vulnerability.
Users of Matt Wright Guestbook version 2.3.1 and below are affected by CVE-2006-1697.
CVE-2006-1697 is a cross-site scripting (XSS) vulnerability that allows attackers to execute arbitrary scripts.
Attackers can exploit CVE-2006-1697 to execute arbitrary web scripts or HTML in the context of the affected user's browser.