CVE-2010-4971
VideoWhisper PHP 2 Way Video Chat - Cross-Site Scripting via r Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2010-4971. PoCs published by Sid3^effects.
AI-analyzed exploit summary This exploit demonstrates a reflected XSS vulnerability in VideoWhisper PHP 2 Way Video Chat by injecting malicious script code via the 'r' parameter. The payload uses HTML tags to display a marquee with arbitrary text, confirming the vulnerability.
Description
Cross-site scripting (XSS) vulnerability in VideoWhisper PHP 2 Way Video Chat component for Joomla! allows remote attackers to inject arbitrary web script or HTML via the r parameter to index.php.
Exploits (1)
This exploit demonstrates a reflected XSS vulnerability in VideoWhisper PHP 2 Way Video Chat by injecting malicious script code via the 'r' parameter. The payload uses HTML tags to display a marquee with arbitrary text, confirming the vulnerability.