Record summary

CVE-2008-3326 has a selected CVSS score of 2.6; EIP currently links 1 catalogued exploit.

Description

Cross-site scripting (XSS) vulnerability in blog/edit.php in Moodle 1.6.x before 1.6.7 and 1.7.x before 1.7.5 allows remote attackers to inject arbitrary web script or HTML via the etitle parameter (blog entry title).

Description source: CVE List

Exploitation context

Available material

Catalogued exploits
1

Proofs of concept

1

Catalogued exploits

ExploitDBOLIB 7 WebView 2.5.1.1 - 'infile' Local File InclusionExploitDB exploitby ZeNNot analyzed1 file

linked to 2 vulnerabilities

ExploitDB

PoC details

References

11