VULNERABILITY INTELLIGENCE

CVE-2007-1998

CVSS score7.5 HIGH
EPSS probability8.75%
CISA KEVNot currently listed
Published2007-04-12
Last modified2026-06-16

Description

Direct static code injection vulnerability in HIOX Guest Book (HGB) 4.0 allows remote attackers to inject arbitrary PHP code via the Email field, which results in code execution through a direct request to gb.php.