CVE-2005-4488
Redakto WCMS < 3.2 - Cross-Site Scripting via Multiple Parameters
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2005-4488. PoCs published by r0t3d3Vil.
AI-analyzed exploit summary The provided text describes multiple XSS vulnerabilities in ComputerOil Redakto CMS version 3.2, detailing various URL parameters that are susceptible to injection of arbitrary script code. It includes example URLs demonstrating the vulnerabilities but does not contain executable exploit code.
Description
Multiple cross-site scripting (XSS) vulnerabilities in index.tpl in Redakto WCMS 3.2 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) iid, (2) iid2, (3) r, (4) cart, (5) str, (6) nf, and (7) a parameters.
Exploits (1)
The provided text describes multiple XSS vulnerabilities in ComputerOil Redakto CMS version 3.2, detailing various URL parameters that are susceptible to injection of arbitrary script code. It includes example URLs demonstrating the vulnerabilities but does not contain executable exploit code.