CVE-2007-6037
Citrix NetScaler 8.0 build 47.8 - Cross-Site Scripting via Standalone Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2007-6037. PoCs published by nnposter.
AI-analyzed exploit summary This exploit demonstrates a cross-site scripting (XSS) vulnerability in Citrix NetScaler by injecting malicious JavaScript via the 'standalone' parameter in a generic API call. The payload executes an alert with the user's cookies, confirming the vulnerability.
Description
Cross-site scripting (XSS) vulnerability in ws/generic_api_call.pl in Citrix NetScaler 8.0 build 47.8 allows remote attackers to inject arbitrary web script or HTML via the standalone parameter and other unspecified parameters.
Exploits (1)
This exploit demonstrates a cross-site scripting (XSS) vulnerability in Citrix NetScaler by injecting malicious JavaScript via the 'standalone' parameter in a generic API call. The payload executes an alert with the user's cookies, confirming the vulnerability.