CVE-2008-7089
Pligg CMS < 9.9.0 - Cross-Site Scripting via Search Keyword Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-7089. PoCs published by GulfTech Security.
AI-analyzed exploit summary This is a detailed advisory describing multiple vulnerabilities in Pligg CMS, including SQL injection, XSS, and arbitrary file access. It provides technical explanations and exploitation examples but does not include executable exploit code.
Description
Cross-site scripting (XSS) vulnerability in Pligg 9.9 and earlier allows remote attackers to inject arbitrary web script or HTML via the keyword parameter in a search action to user.php and other unspecified vectors.
Exploits (1)
This is a detailed advisory describing multiple vulnerabilities in Pligg CMS, including SQL injection, XSS, and arbitrary file access. It provides technical explanations and exploitation examples but does not include executable exploit code.