Exploitation Summary
EIP tracks 1 public exploit for CVE-2009-2965. PoCs published by Francesco Bianchino.
AI-analyzed exploit summary This exploit demonstrates a cross-site scripting (XSS) vulnerability in Radvision Scopia by injecting malicious JavaScript via the 'page' parameter in the URL. The PoC shows how an attacker can execute arbitrary script code in the context of the affected site.
Description
Cross-site scripting (XSS) vulnerability in entry/index.jsp in Radvision Scopia 5.7, and possibly other versions before SD 7.0.100, allows remote attackers to inject arbitrary web script or HTML via the page parameter.
Exploits (1)
This exploit demonstrates a cross-site scripting (XSS) vulnerability in Radvision Scopia by injecting malicious JavaScript via the 'page' parameter in the URL. The PoC shows how an attacker can execute arbitrary script code in the context of the affected site.