CVE-2008-6888
Pre Classified Listings 1.0 - Cross-Site Scripting via Signup Address Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-6888. PoCs published by Pouya_Server.
AI-analyzed exploit summary This exploit demonstrates a cross-site scripting (XSS) vulnerability in Pre Classified Listings by injecting malicious script code via the 'address' parameter in the signup form. The payload bypasses sanitization by using HTML encoding and line breaks to execute arbitrary JavaScript.
Description
Cross-site scripting (XSS) vulnerability in signup.asp in Pre Classified Listings 1.0 allows remote attackers to inject arbitrary web script or HTML via the address parameter.
Exploits (1)
This exploit demonstrates a cross-site scripting (XSS) vulnerability in Pre Classified Listings by injecting malicious script code via the 'address' parameter in the signup form. The payload bypasses sanitization by using HTML encoding and line breaks to execute arbitrary JavaScript.