CVE-2008-6979

Phpadultsite Cms - XSS

Title source: rule

Description

Cross-site scripting (XSS) vulnerability in as_archives.php in phpAdultSite CMS, possibly 2.3.2, allows remote attackers to inject arbitrary web script or HTML via the results_per_page parameter to index.php. NOTE: some of these details are obtained from third party information. NOTE: this issue might be resultant from a separate SQL injection vulnerability.

Exploits (1)

exploitdb WORKING POC VERIFIED
by David Sopas · textwebappsphp
https://www.exploit-db.com/exploits/32338

Scores

EPSS 0.0026
EPSS Percentile 49.1%

Classification

CWE
CWE-79
Status published

Affected Products (2)

phpadultsite/phpadultsite_cms
n/a/n/a

Timeline

Published Aug 19, 2009
Tracked Since Feb 18, 2026