Digioz maintains a focused product line centered on its guestbook application, a web-based utility component with a narrow deployment footprint. The observed vulnerability signal reflects application-layer input-handling weaknesses, primarily cross-site scripting issues inherent to web form processing and user-generated content contexts. Live severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Digioz over time
Signals from CVEs in this vendor scope (2 CVEs).
2 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2009-3189MEDIUM Cross-site scripting (XSS) vulnerability in search.php in DigiOz Guestbook 1.7.2 allows remote attackers to inject arbitrary web script or HTML via the search_term parameter. | Sep 15, 2009 | 4.3 | 21 | NO | YES |
CVE-2006-5651MEDIUM list.php in DigiOz Guestbook before 1.7.1 allows remote attackers to obtain sensitive information via a non-numeric page parameter, which displays the installation path in the resu | Nov 7, 2006 | 5.0 | 15 | NO | NO |
Signals from CVEs in this vendor scope (2 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Digioz.
Media articles that mention a CVE ID that affects a product developed by Digioz — matched by CVE ID, not by vendor name.