CVE-2008-2987
Benja CMS 0.1 - Cross-Site Scripting via PATH_INFO to Admin Menu Pages
Title source: llmExploitation Summary
EIP tracks 3 public exploits for CVE-2008-2987. PoCs published by CWH Underground.
AI-analyzed exploit summary The provided text describes multiple vulnerabilities in benja CMS 0.1, including XSS, arbitrary file upload, and unauthorized access to administrative scripts. It does not contain executable exploit code but references the vulnerabilities and their potential impact.
Description
Multiple cross-site scripting (XSS) vulnerabilities in Benja CMS 0.1 allow remote attackers to inject arbitrary web script or HTML via the PATH_INFO to (1) admin_edit_submenu.php, (2) admin_new_submenu.php, and (3) admin_edit_topmenu.php in admin/.
Exploits (3)
The provided text describes multiple vulnerabilities in benja CMS 0.1, including XSS, arbitrary file upload, and unauthorized access to administrative scripts. It does not contain executable exploit code but references the vulnerabilities and their potential impact.
The provided text describes multiple vulnerabilities in benja CMS 0.1, including XSS, arbitrary file upload, and unauthorized access to administrative scripts. It does not contain executable exploit code but references the issues and their potential impact.
The provided text describes multiple vulnerabilities in 'benja CMS 0.1', including XSS, arbitrary file upload, and unauthorized access to administrative scripts. It does not contain exploit code but references the vulnerabilities and their potential impact.