← All CVEs

CVE-2007-2093

high · 7.5

Direct static code injection vulnerability in index.php in Limesoft Guestbook (LS Simple Guestbook) 1.0 allows remote attackers to inject arbitrary PHP code into posts.txt via the message parameter.

7.5
CVSS
45.7%
EPSS (exploit prob.)
99th
EPSS percentile
2007-04-18
Published

AV:N/AC:L/Au:N/C:P/I:P/A:P

Affected products

VendorProductAffected versions
limesoftlimesoft_guestbook1.0

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2007-2093