Files
CVEs-PoC/2014/CVE-2014-1620.md
T
2024-06-18 02:51:15 +02:00

18 lines
715 B
Markdown

### [CVE-2014-1620](https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2014-1620)
![](https://img.shields.io/static/v1?label=Product&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Version&message=n%2Fa&color=blue)
![](https://img.shields.io/static/v1?label=Vulnerability&message=n%2Fa&color=brighgreen)
### Description
Multiple cross-site scripting (XSS) vulnerabilities in add.php in HIOX Guest Book (HGB) 5.0 allow remote attackers to inject arbitrary web script or HTML via the (1) name1, (2) email, or (3) cmt parameter.
### POC
#### Reference
- http://packetstormsecurity.com/files/124681/Hiox-Guest-Book-5.0-Cross-Site-Scripting.html
#### Github
No PoCs found on GitHub currently.