CVE-2008-5164
The Rat CMS Pre-Alpha 2 - Cross-Site Scripting via id Parameter or PATH_INFO
Title source: llmExploitation Summary
EIP tracks 2 public exploits for CVE-2008-5164. PoCs published by CWH Underground.
AI-analyzed exploit summary The provided text describes multiple input-validation vulnerabilities in Rat CMS, including SQL injection and XSS, but does not contain actual exploit code. It references a specific version (Pre-Alpha 2) and provides a generic XSS example URL.
Description
Multiple cross-site scripting (XSS) vulnerabilities in The Rat CMS Pre-Alpha 2 allow remote attackers to inject arbitrary web script or HTML via the (1) id parameter to (a) viewarticle.php and (b) viewarticle2.php and the (2) PATH_INFO to viewarticle.php.
Exploits (2)
The provided text describes multiple input-validation vulnerabilities in Rat CMS, including SQL injection and XSS, but does not contain actual exploit code. It references a specific version (Pre-Alpha 2) and provides a generic XSS example URL.
The provided text describes multiple input-validation vulnerabilities in Rat CMS, including SQL injection and XSS, but does not contain actual exploit code. It outlines potential attack vectors via specific URLs.