packetstormsecurity.org
http://packetstormsecurity.org/1001-exploits/phpeppershopws-xss.txt CVE-2010-1361
PHPepperShop 2.5 - 'USER_ARTIKEL_HANDLING_AUFRUF.php' Cross-Site Scripting
Record summary
CVE-2010-1361 has a selected CVSS score of 4.3; EIP currently links 1 catalogued exploit.
Description
Cross-site scripting (XSS) vulnerability in shop/USER_ARTIKEL_HANDLING_AUFRUF.php in PHPepperShop 2.5 allows remote attackers to inject arbitrary web script or HTML via the darstellen parameter.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 1
Proofs of concept
1Catalogued exploits
ExploitDBPHPepperShop 2.5 - 'USER_ARTIKEL_HANDLING_AUFRUF.php' Cross-Site ScriptingExploitDB exploitby CruxNot analyzed1 file
References
437707vdb entry
http://www.securityfocus.com/bid/37707 phpeppershop-darstellen-xss(55561)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/55561 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2010-1361