CVE-2003-1347

Geeklog 1.3.7 - Cross-Site Scripting via cid, uid, or Homepage Field

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 4 public exploits for CVE-2003-1347. PoCs published by snooq.

AI-analyzed exploit summary The provided text describes a cross-site scripting (XSS) vulnerability in Geeklog's 'users.php' script due to insufficient input sanitization. An attacker can craft a malicious URL containing script code, which executes in the context of a victim's browser when visited.

Description

Multiple cross-site scripting (XSS) vulnerabilities in Geeklog 1.3.7 allow remote attackers to inject arbitrary web script or HTML via the (1) cid parameter to comment.php, (2) uid parameter to profiles.php, (3) uid to users.php, and (4) homepage field.

Exploits (4)

exploitdb WRITEUP VERIFIED
by snooq · textwebappsphp
https://www.exploit-db.com/exploits/22164

The provided text describes a cross-site scripting (XSS) vulnerability in Geeklog's 'users.php' script due to insufficient input sanitization. An attacker can craft a malicious URL containing script code, which executes in the context of a victim's browser when visited.

Classification
Writeup 90%
Attack Type
Xss
Complexity
Trivial
Reliability
Reliable
Target: Geeklog (version not specified)
No auth needed
Prerequisites: Victim must visit a crafted URL
MITRE ATT&CK
devstral-2 · analyzed Feb 16, 2026 Full analysis →
exploitdb WRITEUP VERIFIED
by snooq · textwebappsphp
https://www.exploit-db.com/exploits/22163

The provided text describes a cross-site scripting (XSS) vulnerability in Geeklog's 'profiles.php' script due to insufficient input sanitization. It includes example URLs demonstrating how an attacker could inject malicious script code via URI parameters.

Classification
Writeup 90%
Attack Type
Xss
Complexity
Trivial
Reliability
Reliable
Target: Geeklog (version not specified)
No auth needed
Prerequisites: Victim must visit a malicious link
MITRE ATT&CK
devstral-2 · analyzed Feb 16, 2026 Full analysis →
exploitdb WORKING POC VERIFIED
by snooq · textwebappsphp
https://www.exploit-db.com/exploits/22166

This exploit demonstrates an HTML injection vulnerability in Geeklog's user account 'Homepage' field, allowing arbitrary script execution in the context of the victim's browser. The provided payload triggers a JavaScript alert with the document cookie when the mouse hovers over the injected link.

Classification
Working Poc 90%
Attack Type
Xss
Complexity
Trivial
Reliability
Reliable
Target: Geeklog (version not specified)
Auth required
Prerequisites: User account with permission to edit the 'Homepage' field · Victim interaction (hovering over the injected link)
MITRE ATT&CK
devstral-2 · analyzed Feb 16, 2026 Full analysis →
exploitdb WORKING POC VERIFIED
by snooq · textwebappsphp
https://www.exploit-db.com/exploits/22165

This exploit demonstrates a cross-site scripting (XSS) vulnerability in Geeklog's comment.php script due to insufficient input sanitization. An attacker can craft a malicious URL containing JavaScript code, which executes in the context of a victim's browser when visited.

Classification
Working Poc 90%
Attack Type
Xss
Complexity
Trivial
Reliability
Reliable
Target: Geeklog (version not specified)
No auth needed
Prerequisites: Victim must visit a crafted URL
MITRE ATT&CK
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (8)

Core 8
Core References
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/6602
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/11075
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/6603
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/6604
Exploit mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/306770
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/6601
Third Party Advisory third-party-advisory x_refsource_sreason
http://securityreason.com/securityalert/3226

Scores

EPSS 0.0201
EPSS Percentile 78.3%

Details

CWE
CWE-79
Status published
Products (1)
geeklog/geeklog 1.3.7
Published Dec 31, 2003
Tracked Since Feb 18, 2026