CVE-2004-1975
paFileDB 3.1 - Cross-Site Scripting via Category Module id Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2004-1975.
AI-analyzed exploit summary This exploit demonstrates a cross-site scripting (XSS) vulnerability in paFileDB 3.1 by injecting a malicious script via the 'id' parameter in a crafted URL. The payload triggers an alert dialog, confirming the XSS vulnerability.
Description
Cross-site scripting (XSS) vulnerability in the category module in pafiledb.php for paFileDB 3.1 allows remote attackers to inject arbitrary web script or HTML via the id parameter, a vulnerability that is closely related to CVE-2004-1551.
Exploits (1)
This exploit demonstrates a cross-site scripting (XSS) vulnerability in paFileDB 3.1 by injecting a malicious script via the 'id' parameter in a crafted URL. The payload triggers an alert dialog, confirming the XSS vulnerability.