CVE-2008-0359
BLOG:CMS 4.2.1b - Cross-Site Scripting via PATH_INFO to photo/admin.php or photo/index.php
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-0359. PoCs published by DSecRG.
AI-analyzed exploit summary This advisory details multiple SQL injection and XSS vulnerabilities in Blogcms 4.2.1b, including examples of exploit URLs and payloads. It provides technical descriptions and proof-of-concept attack vectors but does not include executable exploit code.
Description
Multiple cross-site scripting (XSS) vulnerabilities in BLOG:CMS 4.2.1b allow remote attackers to inject arbitrary web script or HTML via the PATH_INFO to (1) admin.php or (2) index.php in photo/.
Exploits (1)
This advisory details multiple SQL injection and XSS vulnerabilities in Blogcms 4.2.1b, including examples of exploit URLs and payloads. It provides technical descriptions and proof-of-concept attack vectors but does not include executable exploit code.