Michael Salzer's vulnerability profile centers on GuestBox, a focused application where the observed weaknesses involve sensitive information exposure and cross-site scripting vulnerabilities in web-facing components. Current severity, exploitation, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Michael Salzer over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2006-0859MEDIUM Michael Salzer Guestbox 0.6, and other versions before 0.8, allows remote attackers to post an admin comment to a guestbook entry via a certain modified form, possibly related to t | Feb 23, 2006 | 5.0 | 15 | NO | NO |
CVE-2006-0861MEDIUM Michael Salzer Guestbox 0.6, and other versions before 0.8, allows remote attackers to obtain the source IP addresses of guestbook entries via a direct request to /gb/gblog. | Feb 23, 2006 | 5.0 | 15 | NO | NO |
CVE-2006-0860MEDIUM Multiple cross-site scripting (XSS) vulnerabilities in Michael Salzer Guestbox 0.6, and other versions before 0.8, allow remote attackers to inject arbitrary web script or HTML via | Feb 23, 2006 | 4.3 | 14 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Michael Salzer.
Media articles that mention a CVE ID that affects a product developed by Michael Salzer — matched by CVE ID, not by vendor name.