Skip to main content

Vendor/product archive

kmsoft / guestbook CVEs

Beta · best-effort

2 CVEs tagged to kmsoft / guestbook0 Critical, 1 High, 1 Medium, 0 Low, 0 Unrated.

CVE-2010-4987

Published Nov 1, 2011

SQL injection vulnerability in default.asp in KMSoft Guestbook (aka GBook) allows remote attackers to execute arbitrary SQL commands via the p parameter.

CVSS 7.5 · High
Vendor/product tagsBeta · best-effort

CVE-2010-0978

Published Mar 16, 2010

KMSoft Guestbook (aka GBook) 1.0 stores sensitive information under the web root with insufficient access control, which allows remote attackers to download a database via a direc…

CVSS 5.0 · Medium
Vendor/product tagsBeta · best-effort
Showing 1-2 of 2 CVEsPage 1 of 1