CVE-2008-6386
Z1Exchange 1.0 - Cross-Site Scripting via showads.php id Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-6386. PoCs published by Pouya_Server.
AI-analyzed exploit summary The provided text describes SQL injection and XSS vulnerabilities in Z1Exchange 1.0, with a proof-of-concept XSS payload. It lacks functional exploit code but includes technical details about the vulnerabilities and their impact.
Description
Cross-site scripting (XSS) vulnerability in showads.php in Z1Exchange 1.0 allows remote attackers to inject arbitrary web script or HTML via the id parameter.
Exploits (1)
The provided text describes SQL injection and XSS vulnerabilities in Z1Exchange 1.0, with a proof-of-concept XSS payload. It lacks functional exploit code but includes technical details about the vulnerabilities and their impact.