CVE-2010-0725
Arab Cart 1.0.2.0 - Cross-Site Scripting via showimg.php id Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2010-0725. PoCs published by indoushka.
AI-analyzed exploit summary The exploit demonstrates multiple vulnerabilities in Arab Cart 1.0.2.0, including XSS and SQL injection via crafted HTTP requests to the 'showimg.php' endpoint. The PoC provides direct URLs to trigger these vulnerabilities.
Description
Cross-site scripting (XSS) vulnerability in showimg.php in Arab Cart 1.0.2.0 allows remote attackers to inject arbitrary web script or HTML via the id parameter.
Exploits (1)
The exploit demonstrates multiple vulnerabilities in Arab Cart 1.0.2.0, including XSS and SQL injection via crafted HTTP requests to the 'showimg.php' endpoint. The PoC provides direct URLs to trigger these vulnerabilities.