CVE-2007-5312
TorrentTrader Classic 1.07 - Cross-Site Scripting via Color Parameter or Category Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2007-5312. PoCs published by HACKERS PAL.
AI-analyzed exploit summary The exploit demonstrates multiple vulnerabilities in TorrentTrader Classic v1.07, including local file inclusion and cross-site scripting (XSS). It provides specific endpoints and payloads to trigger these vulnerabilities.
Description
Cross-site scripting (XSS) vulnerability in TorrentTrader Classic 1.07 allows remote attackers to inject arbitrary web script or HTML via the (1) color parameter to pjirc/css.php and the (2) cat parameter to browse.php.
Exploits (1)
The exploit demonstrates multiple vulnerabilities in TorrentTrader Classic v1.07, including local file inclusion and cross-site scripting (XSS). It provides specific endpoints and payloads to trigger these vulnerabilities.