CVE-2002-2362
MyMarket 1.71 - Cross-Site Scripting via noticemsg Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2002-2362. PoCs published by qber66.
AI-analyzed exploit summary This is a writeup describing a cross-site scripting (XSS) vulnerability in MyMarket. The vulnerability allows an attacker to inject malicious HTML and script code via unsanitized CGI variables, which executes in the user's browser within the security context of the vulnerable site.
Description
Cross-site scripting (XSS) vulnerability in form_header.php in MyMarket 1.71 allows remote attackers to inject arbitrary web script or HTML via the noticemsg parameter.
Exploits (1)
This is a writeup describing a cross-site scripting (XSS) vulnerability in MyMarket. The vulnerability allows an attacker to inject malicious HTML and script code via unsanitized CGI variables, which executes in the user's browser within the security context of the vulnerable site.