CVE-2008-6847
Pre ASP Job Board - Cross-Site Scripting via Employee Login msg Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-6847. PoCs published by Pouya_Server.
AI-analyzed exploit summary This exploit demonstrates a cross-site scripting (XSS) vulnerability in Pre ASP Job Board by injecting malicious JavaScript via the 'msg' parameter in the login page. The payload uses a dynamic source (dynsrc) attribute in an img tag to execute arbitrary script code.
Description
Cross-site scripting (XSS) vulnerability in Employee/emp_login.asp in Pre ASP Job Board allows remote attackers to inject arbitrary web script or HTML via the msg parameter.
Exploits (1)
This exploit demonstrates a cross-site scripting (XSS) vulnerability in Pre ASP Job Board by injecting malicious JavaScript via the 'msg' parameter in the login page. The payload uses a dynamic source (dynsrc) attribute in an img tag to execute arbitrary script code.