CVE-2008-5039
PHP-Nuke League module - Cross-Site Scripting via tid Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-5039. PoCs published by Ehsan_Hp200.
AI-analyzed exploit summary The provided text describes a cross-site scripting (XSS) vulnerability in the PHP-Nuke Nuke League module. It explains the issue and provides a sample exploit URL but does not include actual exploit code.
Description
Cross-site scripting (XSS) vulnerability in the League module for PHP-Nuke, possibly 2.4, allows remote attackers to inject arbitrary web script or HTML via the tid parameter in a team action to modules.php.
Exploits (1)
The provided text describes a cross-site scripting (XSS) vulnerability in the PHP-Nuke Nuke League module. It explains the issue and provides a sample exploit URL but does not include actual exploit code.