CVE-2002-0553
SunShop Shopping Cart <= 2.5 - Cross-Site Scripting in Customer Registration
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2002-0553. PoCs published by ppp-design.
AI-analyzed exploit summary This exploit demonstrates a stored XSS vulnerability in SunShop by injecting arbitrary script code into form fields during user registration. The PoC shows how an attacker can embed malicious JavaScript to execute in the context of an administrative user.
Description
Cross-site scripting vulnerability in SunShop 2.5 and earlier allows remote attackers to gain administrative privileges to SunShop by injecting the script into fields during new customer registration.
Exploits (1)
This exploit demonstrates a stored XSS vulnerability in SunShop by injecting arbitrary script code into form fields during user registration. The PoC shows how an attacker can embed malicious JavaScript to execute in the context of an administrative user.