CVE-2008-6205
URLStreet 1.0 - Cross-Site Scripting via Language, Order, or Filter Parameters
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-6205. PoCs published by ZoRLu.
AI-analyzed exploit summary This exploit demonstrates multiple cross-site scripting (XSS) vulnerabilities in URLStreet 1.0 by injecting arbitrary JavaScript code via unsanitized input parameters in the 'seeurl.php' script.
Description
Cross-site scripting (XSS) vulnerability in seeurl.php in Xavier Flahaut URLStreet 1.0 allows remote attackers to inject arbitrary web script or HTML via the (1) language, (2) order, and (3) filter parameters. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
Exploits (1)
This exploit demonstrates multiple cross-site scripting (XSS) vulnerabilities in URLStreet 1.0 by injecting arbitrary JavaScript code via unsanitized input parameters in the 'seeurl.php' script.