CVE-2007-2879
GTP GNUTurk Portal System 3G - Cross-Site Scripting via Month Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2007-2879. PoCs published by vagrant.
AI-analyzed exploit summary This exploit demonstrates a cross-site scripting (XSS) vulnerability in Gnuturk 3G by injecting malicious JavaScript into the 'month' parameter of the 'mods.php' script. The payload triggers an alert box displaying the user's cookies, confirming the vulnerability.
Description
Cross-site scripting (XSS) vulnerability in mods.php in GTP GNUTurk Portal System 3G allows remote attackers to inject arbitrary web script or HTML via the month parameter.
Exploits (1)
This exploit demonstrates a cross-site scripting (XSS) vulnerability in Gnuturk 3G by injecting malicious JavaScript into the 'month' parameter of the 'mods.php' script. The payload triggers an alert box displaying the user's cookies, confirming the vulnerability.