VULNERABILITY INTELLIGENCE
CVE-2007-1998
CVSS score7.5 HIGH
EPSS probability8.75%
CISA KEVNot currently listed
Published2007-04-12
Last modified2026-06-16
Description
Direct static code injection vulnerability in HIOX Guest Book (HGB) 4.0 allows remote attackers to inject arbitrary PHP code via the Email field, which results in code execution through a direct request to gb.php.