RNN Guestbook Multiple Vulnerabilities
BID:9116
Info
RNN Guestbook Multiple Vulnerabilities
| Bugtraq ID: | 9116 |
| Class: | Unknown |
| CVE: | |
| Remote: | Yes |
| Local: | Yes |
| Published: | Nov 27 2003 12:00AM |
| Updated: | Nov 27 2003 12:00AM |
| Credit: | The disclosure of these issue has been credited to Chris Rahm aka BrainRawt <[email protected]>. |
| Vulnerable: |
RNN Guestbook 1.2 |
| Not Vulnerable: | |
Discussion
RNN Guestbook Multiple Vulnerabilities
Multiple vulnerabilities have been reported to exist in RNN Guestbook that may allow an attacker to carry out command execution, HTML injection, information disclosure and unauthorized administrative access to the guestbook.
Multiple vulnerabilities have been reported to exist in RNN Guestbook that may allow an attacker to carry out command execution, HTML injection, information disclosure and unauthorized administrative access to the guestbook.
Exploit / POC
RNN Guestbook Multiple Vulnerabilities
The majority of these issues may be exploited with a web browser.
The majority of these issues may be exploited with a web browser.
Solution / Fix
RNN Guestbook Multiple Vulnerabilities
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
RNN Guestbook Multiple Vulnerabilities
References:
References:
- Guestbook Product Page (Reedboy Netservices Network)
- RNN's Guestbook 1.2 Multiple Vulnerabilities ("BrainRawt"
)