CVE-2009-3789

OpenDocMan 1.2.5 - Cross-Site Scripting via Multiple Parameters

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 12 public exploits for CVE-2009-3789. PoCs published by Amol Naik.

AI-analyzed exploit summary The provided text describes an SQL injection and XSS vulnerability in OpenDocMan 1.2.5, including a sample XSS payload. It lacks executable exploit code but details the vulnerability and potential impact.

Description

Multiple cross-site scripting (XSS) vulnerabilities in OpenDocMan 1.2.5 allow remote attackers to inject arbitrary web script or HTML via the last_message parameter to (1) add.php, (2) toBePublished.php, (3) index.php, and (4) admin.php; the PATH_INFO to the default URI to (5) category.php, (6) department.php, (7) profile.php, (8) rejects.php, (9) search.php, (10) toBePublished.php, (11) user.php, and (12) view_file.php; and (13) the caller parameter in a Modify User action to user.php.

Exploits (12)

exploitdb WRITEUP VERIFIED
by Amol Naik · textwebappsphp
https://www.exploit-db.com/exploits/33305

The provided text describes an SQL injection and XSS vulnerability in OpenDocMan 1.2.5, including a sample XSS payload. It lacks executable exploit code but details the vulnerability and potential impact.

Classification
Writeup 90%
Attack Type
Xss
Complexity
Trivial
Reliability
Theoretical
Target: OpenDocMan 1.2.5
No auth needed
Prerequisites: Access to the vulnerable OpenDocMan instance
MITRE ATT&CK
devstral-2 · analyzed Feb 16, 2026 Full analysis →
exploitdb WORKING POC VERIFIED
by Amol Naik · textwebappsphp
https://www.exploit-db.com/exploits/33304

The exploit demonstrates XSS vulnerabilities in OpenDocMan by injecting JavaScript via unsanitized user input in the URL. It also references an SQL injection vulnerability, though no direct SQLi payload is provided.

Classification
Working Poc 90%
Attack Type
Xss
Complexity
Trivial
Reliability
Reliable
Target: OpenDocMan 1.2.5
No auth needed
Prerequisites: Access to the target application URL
MITRE ATT&CK
devstral-2 · analyzed Feb 16, 2026 Full analysis →
exploitdb WRITEUP VERIFIED
by Amol Naik · textwebappsphp
https://www.exploit-db.com/exploits/33296

The provided text describes an SQL injection and XSS vulnerability in OpenDocMan 1.2.5, with example URLs demonstrating the XSS exploit. No actual exploit code is present.

Classification
Writeup 90%
Attack Type
Xss
Complexity
Trivial
Reliability
Theoretical
Target: OpenDocMan 1.2.5
No auth needed
Prerequisites: Access to the vulnerable OpenDocMan instance
MITRE ATT&CK
devstral-2 · analyzed Feb 16, 2026 Full analysis →
exploitdb WRITEUP VERIFIED
by Amol Naik · textwebappsphp
https://www.exploit-db.com/exploits/33303

The provided text describes an SQL injection and XSS vulnerability in OpenDocMan 1.2.5, with an example XSS payload. It lacks executable exploit code but outlines the vulnerability and potential impact.

Classification
Writeup 90%
Attack Type
Xss
Complexity
Trivial
Reliability
Theoretical
Target: OpenDocMan 1.2.5
No auth needed
Prerequisites: Access to the search.php endpoint
MITRE ATT&CK
devstral-2 · analyzed Feb 16, 2026 Full analysis →
exploitdb WRITEUP VERIFIED
by Amol Naik · textwebappsphp
https://www.exploit-db.com/exploits/33302

The provided text describes an SQL injection and XSS vulnerability in OpenDocMan 1.2.5, with an example XSS payload. It lacks executable exploit code but outlines the vulnerability and potential impact.

Classification
Writeup 90%
Attack Type
Xss
Complexity
Trivial
Reliability
Theoretical
Target: OpenDocMan 1.2.5
No auth needed
Prerequisites: Access to the vulnerable endpoint
MITRE ATT&CK
devstral-2 · analyzed Feb 16, 2026 Full analysis →
exploitdb WRITEUP VERIFIED
by Amol Naik · textwebappsphp
https://www.exploit-db.com/exploits/33301

The provided text describes an SQL injection and XSS vulnerability in OpenDocMan 1.2.5, with an example XSS payload. No functional exploit code is included.

Classification
Writeup 90%
Attack Type
Xss
Complexity
Trivial
Reliability
Theoretical
Target: OpenDocMan 1.2.5
No auth needed
Prerequisites: Access to the vulnerable application
MITRE ATT&CK
devstral-2 · analyzed Feb 16, 2026 Full analysis →
exploitdb WRITEUP VERIFIED
by Amol Naik · textwebappsphp
https://www.exploit-db.com/exploits/33297

The provided text describes an SQL injection and XSS vulnerability in OpenDocMan 1.2.5, with an example XSS payload. It lacks executable exploit code but provides technical details and a proof-of-concept URL for XSS.

Classification
Writeup 90%
Attack Type
Xss
Complexity
Trivial
Reliability
Reliable
Target: OpenDocMan 1.2.5
No auth needed
Prerequisites: Access to the target application URL
MITRE ATT&CK
devstral-2 · analyzed Feb 16, 2026 Full analysis →
exploitdb WORKING POC VERIFIED
by Amol Naik · textwebappsphp
https://www.exploit-db.com/exploits/33300

The exploit demonstrates an XSS vulnerability in OpenDocMan by injecting a script tag into the URL. It also includes a base64-encoded payload suggesting potential SQL injection, though the primary focus is on XSS.

Classification
Working Poc 90%
Attack Type
Xss
Complexity
Trivial
Reliability
Reliable
Target: OpenDocMan 1.2.5
No auth needed
Prerequisites: Access to the vulnerable OpenDocMan instance
MITRE ATT&CK
devstral-2 · analyzed Feb 16, 2026 Full analysis →
exploitdb WORKING POC VERIFIED
by Amol Naik · textwebappsphp
https://www.exploit-db.com/exploits/33299

This exploit demonstrates an XSS vulnerability in OpenDocMan 1.2.5 by injecting a script tag into the URL, which executes arbitrary JavaScript in the context of the user's session. The vulnerability arises from insufficient sanitization of user-supplied input in the category.php file.

Classification
Working Poc 90%
Attack Type
Xss
Complexity
Trivial
Reliability
Reliable
Target: OpenDocMan 1.2.5
No auth needed
Prerequisites: Access to the target application's URL
MITRE ATT&CK
devstral-2 · analyzed Feb 16, 2026 Full analysis →
exploitdb WRITEUP VERIFIED
by Amol Naik · textwebappsphp
https://www.exploit-db.com/exploits/33298

The provided text describes an SQL injection and XSS vulnerability in OpenDocMan 1.2.5, with an example XSS payload. No functional exploit code is included.

Classification
Writeup 90%
Attack Type
Xss
Complexity
Trivial
Reliability
Theoretical
Target: OpenDocMan 1.2.5
No auth needed
Prerequisites: Access to the vulnerable application URL
MITRE ATT&CK
devstral-2 · analyzed Feb 16, 2026 Full analysis →
exploitdb WRITEUP VERIFIED
by Amol Naik · textwebappsphp
https://www.exploit-db.com/exploits/33295

The provided text describes an SQL injection and XSS vulnerability in OpenDocMan 1.2.5, with an example XSS payload. It lacks executable exploit code but provides technical details and an attack vector.

Classification
Writeup 90%
Attack Type
Xss
Complexity
Trivial
Reliability
Theoretical
Target: OpenDocMan 1.2.5
No auth needed
Prerequisites: Access to the vulnerable OpenDocMan instance
MITRE ATT&CK
devstral-2 · analyzed Feb 16, 2026 Full analysis →
exploitdb WRITEUP VERIFIED
by Amol Naik · textwebappsphp
https://www.exploit-db.com/exploits/9903

The document describes an authentication bypass and multiple XSS vulnerabilities in OpenDocMan v1.2.5. It includes proof-of-concept examples for SQL injection-based authentication bypass and various XSS payloads.

Classification
Writeup 100%
Attack Type
Auth Bypass | Xss
Complexity
Trivial
Reliability
Reliable
Target: OpenDocMan v1.2.5
No auth needed
Prerequisites: valid username (default: 'admin')
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (15)

Core 15
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/53887
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://osvdb.org/59302
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://osvdb.org/59307
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://osvdb.org/59309
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://osvdb.org/59304
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://osvdb.org/59311
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://osvdb.org/59310
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://osvdb.org/59308
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://osvdb.org/59303
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://osvdb.org/59305
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://osvdb.org/59306
Exploit, Patch vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/36777
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/30750
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://osvdb.org/59312

Scores

EPSS 0.0281
EPSS Percentile 84.7%

Details

CWE
CWE-79
Status published
Products (1)
opendocman/opendocman 1.2.5
Published Oct 26, 2009
Tracked Since Feb 18, 2026