CVE-2008-6370
Ocean12 Contact Manager Pro 1.02 - Cross-Site Scripting via DisplayFormat Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-6370. PoCs published by Pouya_Server.
AI-analyzed exploit summary This exploit demonstrates SQL injection, database disclosure, and XSS vulnerabilities in Ocean12 Contact Manager Pro v1.02. It provides direct URLs to exploit these vulnerabilities without requiring authentication.
Description
Cross-site scripting (XSS) vulnerability in default.asp in Ocean12 Contact Manager Pro 1.02 allows remote attackers to inject arbitrary web script or HTML via the DisplayFormat parameter.
Exploits (1)
This exploit demonstrates SQL injection, database disclosure, and XSS vulnerabilities in Ocean12 Contact Manager Pro v1.02. It provides direct URLs to exploit these vulnerabilities without requiring authentication.