CVE-2008-3587
Homes 4 Sale - Cross-Site Scripting via result.php r Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-3587. PoCs published by Ghost Hacker.
AI-analyzed exploit summary This exploit demonstrates a cross-site scripting (XSS) vulnerability in Homes 4 Sale software by injecting malicious script code via the 'r' parameter in the URL. The payload is URL-encoded to bypass input sanitization and execute arbitrary JavaScript in the context of the affected site.
Description
Cross-site scripting (XSS) vulnerability in result.php in Chris Bunting Homes 4 Sale allows remote attackers to inject arbitrary web script or HTML via the r parameter.
Exploits (1)
This exploit demonstrates a cross-site scripting (XSS) vulnerability in Homes 4 Sale software by injecting malicious script code via the 'r' parameter in the URL. The payload is URL-encoded to bypass input sanitization and execute arbitrary JavaScript in the context of the affected site.