Exploitation Summary
EIP tracks 1 public exploit for CVE-2009-0467. PoCs published by Michael Brooks.
AI-analyzed exploit summary The exploit demonstrates multiple vulnerabilities in Profense Web Application Firewall 2.6.2, including CSRF and XSS. It provides functional payloads to manipulate configurations, add proxies, and execute commands via crafted HTTP requests.
Description
Cross-site scripting (XSS) vulnerability in proxy.html in Profense Web Application Firewall 2.6.2 and 2.6.3 allows remote attackers to inject arbitrary web script or HTML via the proxy parameter in a deny_log manage action.
Exploits (1)
The exploit demonstrates multiple vulnerabilities in Profense Web Application Firewall 2.6.2, including CSRF and XSS. It provides functional payloads to manipulate configurations, add proxies, and execute commands via crafted HTTP requests.