Exploitation Summary
EIP tracks 1 public exploit for CVE-2009-2569. PoCs published by TEAMELITE.
AI-analyzed exploit summary This exploit demonstrates multiple XSS vulnerabilities in Verlihub Control Panel 1.7e by injecting arbitrary script code via the 'nick' parameter in the login page. The PoC includes examples of alert-based and iframe-based payloads.
Description
Multiple cross-site scripting (XSS) vulnerabilities in Verlihub Control Panel (VHCP) 1.7e allow remote attackers to inject arbitrary web script or HTML via (1) the nick parameter in a login action to index.php or (2) the URI in a news request to index.html.
Exploits (1)
This exploit demonstrates multiple XSS vulnerabilities in Verlihub Control Panel 1.7e by injecting arbitrary script code via the 'nick' parameter in the login page. The PoC includes examples of alert-based and iframe-based payloads.