CVE-2010-2130
Aris Global ARISg 5.0 - Cross-Site Scripting via wflogin.jsp errmsg Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2010-2130. PoCs published by Yaniv Miron.
AI-analyzed exploit summary This exploit demonstrates a reflected XSS vulnerability in ARISg 5.0 by injecting a script tag into the 'errmsg' parameter of the login page. The PoC shows how arbitrary JavaScript can be executed in the context of the affected site.
Description
Cross-site scripting (XSS) vulnerability in wflogin.jsp in Aris Global ARISg 5.0 allows remote attackers to inject arbitrary web script or HTML via the errmsg parameter.
Exploits (1)
This exploit demonstrates a reflected XSS vulnerability in ARISg 5.0 by injecting a script tag into the 'errmsg' parameter of the login page. The PoC shows how arbitrary JavaScript can be executed in the context of the affected site.