Description
Cross-site scripting (XSS) vulnerability in result.php in Galatolo WebManager (GWM) 1.0 allows remote attackers to inject arbitrary web script or HTML via the key parameter.
Exploits (1)
exploitdb
WORKING POC
VERIFIED
by StAkeR · pythonwebappsphp
https://www.exploit-db.com/exploits/5758
References (1)
Core 1
Core References
Exploit, Third Party Advisory exploit
x_refsource_exploit-db
https://www.exploit-db.com/exploits/5758
Scores
EPSS
0.0013
EPSS Percentile
32.8%
Details
CWE
CWE-79
Status
published
Products (1)
gwm/galatolo_webmanager
1.0
Published
Feb 10, 2009
Tracked Since
Feb 18, 2026