This application requires Javascript for optimal performance.

Chipmunk.Guestbook.AddEntry.PHP.XSS

Release Date

Nov 09, 2011

Severity

medium

Impact

System Compromise: Remote attackers can gain control of vulnerable systems.

Description

This indicates an attack attempt to exploit a Cross Site Scripting vulnerability in Chipmunk GuestBook.

The vulnerability is a result of the application's failure to sanitize user supplied inputs. As a result, a remote attacker can execute arbitrary script code within the context of the application.

Affected Products

Chipmunk PHP Scripts Chipmunk Guestbook 1.4 and earlier versions.

Recommended Actions

Upgrade to the latest version available from the website.
http://www.chipmunk-scripts.com/

Coverage

IPS
VCM

Common Vulnerabilities and Exposures (CVE)

CVE-2006-0069

Reference/s

http://www.securityfocus.com/bid/19087 (BugTraq)

Reference: VID-29822