Exploitation Summary
EIP tracks 1 public exploit for CVE-2009-3599. PoCs published by Moudi.
AI-analyzed exploit summary The provided text describes a cross-site scripting (XSS) vulnerability in HUBScript, where user-supplied input is not properly sanitized. The example demonstrates an XSS payload injected via the 'bid_id' parameter in a URL.
Description
Cross-site scripting (XSS) vulnerability in single_winner1.php in HUBScript 1.0 allows remote attackers to inject arbitrary web script or HTML via the bid_id parameter.
Exploits (1)
The provided text describes a cross-site scripting (XSS) vulnerability in HUBScript, where user-supplied input is not properly sanitized. The example demonstrates an XSS payload injected via the 'bid_id' parameter in a URL.