Exploitation Summary
EIP tracks 1 public exploit for CVE-2002-1995. PoCs published by frog.
AI-analyzed exploit summary This is a writeup describing a reflected XSS vulnerability in phptonuke.php, a PHPNuke AddOn script. The vulnerability allows an attacker to inject arbitrary JavaScript code via the 'filnavn' parameter, which executes in the context of the victim's browser session.
Description
Cross-site scripting (XSS) vulnerability in phptonuke.php for PHP-Nuke allows remote attackers to inject arbitrary web script or HTML via the filnavn parameter.
Exploits (1)
This is a writeup describing a reflected XSS vulnerability in phptonuke.php, a PHPNuke AddOn script. The vulnerability allows an attacker to inject arbitrary JavaScript code via the 'filnavn' parameter, which executes in the context of the victim's browser session.