Exploitation Summary
EIP tracks 1 public exploit for CVE-2008-2508. PoCs published by ZoRLu.
AI-analyzed exploit summary The provided text describes a cross-site scripting (XSS) vulnerability in Tr Script News 2.1, where insufficient input sanitization allows arbitrary script execution in a user's browser context. The vulnerability can be exploited via a crafted URL parameter.
Description
Cross-site scripting (XSS) vulnerability in news.php in Tr Script News 2.1 allows remote attackers to inject arbitrary web script or HTML via the "nb" parameter in voir mode.
Exploits (1)
The provided text describes a cross-site scripting (XSS) vulnerability in Tr Script News 2.1, where insufficient input sanitization allows arbitrary script execution in a user's browser context. The vulnerability can be exploited via a crafted URL parameter.