CVE-2002-2376

Severity CVSS v4.0:
Pending analysis
Type:
CWE-79 Cross-Site Scripting (XSS)
Publication date:
31/12/2002
Last modified:
05/09/2008

Description

Cross-site scripting (XSS) vulnerability in E-Guest_sign.pl in E-Guest 1.1 allows remote attackers to inject arbitrary SSI directives, web script, and HTML via the (1) full name, (2) email, (3) homepage, and (4) location parameters. NOTE: this issue might overlap CVE-2005-1605.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:leung:e-guest:1.1:*:*:*:*:*:*:*