CVE-2005-2010
ublog_reload 1.0.5 - Cross-Site Scripting via btitle Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2005-2010. PoCs published by Dedi Dwianto.
AI-analyzed exploit summary This exploit demonstrates a cross-site scripting (XSS) vulnerability in Ublog Reload due to improper input sanitization in the 'btitle' parameter of trackback.asp. The PoC provides a URL with a script tag that executes arbitrary JavaScript in the context of the affected site.
Description
Cross-site scripting (XSS) vulnerability in trackback.asp in Ublog Reload 1.0.5 allows remote attackers to inject arbitrary web script or HTML via the btitle parameter.
Exploits (1)
This exploit demonstrates a cross-site scripting (XSS) vulnerability in Ublog Reload due to improper input sanitization in the 'btitle' parameter of trackback.asp. The PoC provides a URL with a script tag that executes arbitrary JavaScript in the context of the affected site.