← Back

1 Book

1-book

Vendor: 1 Script • 1 CVE

CVEs (1)

CVE
VENDORS
PRODUCTS
UPDATED
PUBLISHED
CVSS
11 Script
11 Book
Apr 23, 2026
Jun 10, 2008
N/A· v4
N/A· v3
10.0 HIGH· v2
Static code injection vulnerability in guestbook.php in 1Book 1.0.1 and earlier allows remote attackers to upload arbitrary PHP code via the message parameter in an HTML webform, which is written to data.php.