CVE-2005-3742
Advanced Poll < 2.0.3 - Cross-Site Scripting via poll_ident Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2005-3742. PoCs published by [GB].
AI-analyzed exploit summary This exploit demonstrates a cross-site scripting (XSS) vulnerability in Advanced Poll by injecting malicious JavaScript via the 'poll_ident' parameter. The PoC includes two example URLs that trigger arbitrary script execution in the context of the affected site.
Description
Cross-site scripting (XSS) vulnerability in popup.php in Advanced Poll 2.0.3 and earlier allows remote attackers to inject arbitrary web script or HTML via the poll_ident parameter.
Exploits (1)
This exploit demonstrates a cross-site scripting (XSS) vulnerability in Advanced Poll by injecting malicious JavaScript via the 'poll_ident' parameter. The PoC includes two example URLs that trigger arbitrary script execution in the context of the affected site.