CVE-2009-0248
Katy Whitton RankEm - XSS
Title source: llmDescription
Cross-site scripting (XSS) vulnerability in rankup.asp in Katy Whitton RankEm allows remote attackers to inject arbitrary web script or HTML via the siteID parameter.
Exploits (1)
exploitdb
WORKING POC
VERIFIED
by Pouya_Server · textwebappsphp
https://www.exploit-db.com/exploits/7805
References (4)
Scores
EPSS
0.0246
EPSS Percentile
85.0%
Classification
CWE
CWE-79
Status
draft
Affected Products (1)
katywhitton/rankem
Timeline
Published
Jan 22, 2009
Tracked Since
Feb 18, 2026