CVE-2010-0371
Hitmaaan Gallery 1.3 - Cross-Site Scripting via gall or levela Parameters
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2010-0371. PoCs published by indoushka.
AI-analyzed exploit summary This exploit demonstrates multiple XSS vulnerabilities in Hitmaaan Gallery 1.3 by injecting malicious scripts via the 'gall' and 'levela' parameters. The PoC includes URLs with crafted payloads that trigger arbitrary JavaScript execution in the context of the affected site.
Description
Multiple cross-site scripting (XSS) vulnerabilities in index.php in Hitmaaan Gallery 1.3 allow remote attackers to inject arbitrary web script or HTML via the (1) gall and (2) levela parameters.
Exploits (1)
This exploit demonstrates multiple XSS vulnerabilities in Hitmaaan Gallery 1.3 by injecting malicious scripts via the 'gall' and 'levela' parameters. The PoC includes URLs with crafted payloads that trigger arbitrary JavaScript execution in the context of the affected site.