Exploitation Summary
EIP tracks 3 public exploits for CVE-2008-5225. PoCs published by Doz.
AI-analyzed exploit summary The provided text describes a cross-site scripting (XSS) vulnerability in Xerox DocuShare 6 and prior versions. It references a SecurityFocus BID but does not include functional exploit code or a proof-of-concept.
Description
Multiple cross-site scripting (XSS) vulnerabilities in Xerox DocuShare 6 and earlier allow remote attackers to inject arbitrary web script or HTML via the PATH_INFO to the default URI under (1) SearchResults/ and (2) Services/ in dsdn/dsweb/, and (3) the default URI under unspecified docushare/dsweb/ServicesLib/Group-#/ directories.
Exploits (3)
The provided text describes a cross-site scripting (XSS) vulnerability in Xerox DocuShare 6 and prior versions. It references a SecurityFocus BID but does not include functional exploit code or a proof-of-concept.
The provided text describes a cross-site scripting (XSS) vulnerability in Xerox DocuShare 6 and prior versions. It includes a reference to a SecurityFocus BID and a sample URL demonstrating the vulnerability.
The provided text describes a cross-site scripting (XSS) vulnerability in Xerox DocuShare 6 and prior versions. It includes a sample URL demonstrating the vulnerability but lacks executable exploit code.