CVE-2008-5214
ClanLite 2.2006.05.20 - Cross-Site Scripting via annee Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-5214. PoCs published by ZoRLu.
AI-analyzed exploit summary This exploit demonstrates SQL injection and XSS vulnerabilities in ClanLite V2. The SQLi extracts user credentials from the database, while the XSS executes arbitrary JavaScript in the context of the victim's browser.
Description
Cross-site scripting (XSS) vulnerability in service/calendrier.php in ClanLite 2.2006.05.20 allows remote attackers to inject arbitrary web script or HTML via the annee parameter.
Exploits (1)
This exploit demonstrates SQL injection and XSS vulnerabilities in ClanLite V2. The SQLi extracts user credentials from the database, while the XSS executes arbitrary JavaScript in the context of the victim's browser.