CVE-2008-3448
csphonebook 1.02 - XSS
Title source: llmDescription
Cross-site scripting (XSS) vulnerability in index.php in common solutions csphonebook 1.02 allows remote attackers to inject arbitrary web script or HTML via the letter parameter.
Exploits (1)
exploitdb
WRITEUP
VERIFIED
by Ghost Hacker · textwebappsphp
https://www.exploit-db.com/exploits/32135
References (6)
Scores
EPSS
0.0439
EPSS Percentile
88.8%
Classification
CWE
CWE-79
Status
draft
Affected Products (1)
common-solutions/csphonebook
Timeline
Published
Aug 04, 2008
Tracked Since
Feb 18, 2026