CVE-2008-2694
Phpinv - XSS
Title source: ruleDescription
Cross-site scripting (XSS) vulnerability in search.php in phpInv 0.8.0 allows remote attackers to inject arbitrary web script or HTML via the keyword parameter.
Exploits (1)
exploitdb
WORKING POC
VERIFIED
by CWH Underground · textwebappsphp
https://www.exploit-db.com/exploits/5754
Scores
EPSS
0.0313
EPSS Percentile
86.7%
Classification
CWE
CWE-79
Status
draft
Affected Products (1)
phpinv/phpinv
Timeline
Published
Jun 13, 2008
Tracked Since
Feb 18, 2026