CVE-2007-2806

GaliX 2.0 - XSS

Title source: llm

Description

Multiple cross-site scripting (XSS) vulnerabilities in index.php in GaliX 2.0 allow remote attackers to inject arbitrary web script or HTML via the (1) galix_cat_detail, (2) galix_gal_detail, and (3) galix_cat_detail_sort parameters.

Exploits (1)

exploitdb WORKING POC VERIFIED
by John Martinelli · htmlwebappsphp
https://www.exploit-db.com/exploits/30065

Scores

EPSS 0.0217
EPSS Percentile 84.4%

Details

Status published
Products (1)
galix/galix 2.0
Published May 22, 2007
Tracked Since Feb 18, 2026