CVE-2008-7184
Diigo Toolbar and Diigolet - Stored Cross-Site Scripting via Public Comment
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2008-7184. PoCs published by Ferruh Mavituna.
AI-analyzed exploit summary The code describes an HTML-injection (XSS) and information-disclosure vulnerability in Diigo Toolbar and Diigolet via the 'comment' feature. It lacks executable exploit code but provides a conceptual example of an XSS payload.
Description
Cross-site scripting (XSS) vulnerability in Diigo Toolbar and Diigolet allows remote attackers to inject arbitrary web script or HTML via a public comment.
Exploits (1)
The code describes an HTML-injection (XSS) and information-disclosure vulnerability in Diigo Toolbar and Diigolet via the 'comment' feature. It lacks executable exploit code but provides a conceptual example of an XSS payload.