CVE-2004-1645
Xedus 1.0 - Cross-Site Scripting via Username or Param Parameter
Title source: llmExploitation Summary
EIP tracks 2 public exploits for CVE-2004-1645. PoCs published by GulfTech Security.
AI-analyzed exploit summary The provided text describes multiple vulnerabilities in Xedus 1.0, including DoS, XSS, and directory traversal, but does not contain actual exploit code. It references a sample XSS payload without functional implementation.
Description
Cross-site scripting (XSS) vulnerability in Xedus 1.0 allows remote attackers to execute arbitrary web script or HTML via the (1) username parameter to test.x, (2) username parameter to TestServer.x, or (3) param parameter to testgetrequest.x.
Exploits (2)
The provided text describes multiple vulnerabilities in Xedus 1.0, including DoS, XSS, and directory traversal, but does not contain actual exploit code. It references a sample XSS payload without functional implementation.
The provided text describes multiple vulnerabilities in Xedus 1.0, including DoS, XSS, and directory traversal, but does not contain actual exploit code. It references a sample XSS payload without functional PoC.