Exploitation Summary
EIP tracks 1 public exploit for CVE-2010-4111. PoCs published by Richard Brain.
AI-analyzed exploit summary This exploit demonstrates a cross-site scripting (XSS) vulnerability in HP Insight Diagnostics Online Edition by injecting arbitrary JavaScript code via the 'query' parameter in the search.php endpoint. The vulnerability arises due to insufficient input sanitization.
Description
Cross-site scripting (XSS) vulnerability in HP Insight Diagnostics Online Edition before 8.5.1.3712 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Exploits (1)
This exploit demonstrates a cross-site scripting (XSS) vulnerability in HP Insight Diagnostics Online Edition by injecting arbitrary JavaScript code via the 'query' parameter in the search.php endpoint. The vulnerability arises due to insufficient input sanitization.