CVE-2002-1429
endity.com ShoutBOX - Cross-Site Scripting via Site Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2002-1429. PoCs published by delusion.
AI-analyzed exploit summary This exploit demonstrates a cross-site scripting (XSS) vulnerability in shoutBOX due to insufficient input sanitization. Attackers can inject arbitrary HTML and script code via the 'Site URL' form field, leading to code execution in the context of the victim's browser.
Description
Cross-site scripting vulnerability in board.php of endity.com ShoutBOX allows remote attackers to inject arbitrary HTML into the shoutbox page via the site parameter.
Exploits (1)
This exploit demonstrates a cross-site scripting (XSS) vulnerability in shoutBOX due to insufficient input sanitization. Attackers can inject arbitrary HTML and script code via the 'Site URL' form field, leading to code execution in the context of the victim's browser.