Back
CVE-2004-1952
SQL injection vulnerability in Advanced Guestbook 2.2 allows remote attackers to execute arbitrary SQL commands and gain privileges via the password.
Published: Apr 23, 2004
Modified: Jun 16, 2026
CVSS Metrics
Affected Products (1)
| Vendor | Product | Version |
|---|---|---|
| advanced_guestbook | advanced_guestbook | 2.2 |
GitHub Security Advisory GHSA-rf9q-6p6q-j7mp
SQL injection vulnerability in Advanced Guestbook 2.2 allows remote attackers to execute...
References (8)
- http://archives.neohapsis.com/archives/bugtraq/2005-02/0138.html Vendor Advisory
- http://marc.info/?l=bugtraq&m=108258046402890&w=2
- http://www.securityfocus.com/bid/10209 Exploit, Patch, Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/15892
- http://archives.neohapsis.com/archives/bugtraq/2005-02/0138.html Vendor Advisory
- http://marc.info/?l=bugtraq&m=108258046402890&w=2
- http://www.securityfocus.com/bid/10209 Exploit, Patch, Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/15892
Risk Scores
CVSS Score
7.5 / 10
EPSS Score
1.23%
Top 34% most likely to be exploited
Threat Score
30.4 / 100
Data Sources
NVD
EPSS
GitHub