CVE-2010-5010
SchoolMation 2.3 - Cross-Site Scripting via Session Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2010-5010. PoCs published by Sid3^effects.
AI-analyzed exploit summary The document describes SQL injection and XSS vulnerabilities in SchoolMation Version 2.3, providing attack patterns and demo URLs. It includes technical details about the vulnerabilities but lacks functional exploit code.
Description
Cross-site scripting (XSS) vulnerability in schoolmv2/html/studentmain.php in SchoolMation 2.3 allows remote attackers to inject arbitrary web script or HTML via the session parameter.
Exploits (1)
The document describes SQL injection and XSS vulnerabilities in SchoolMation Version 2.3, providing attack patterns and demo URLs. It includes technical details about the vulnerabilities but lacks functional exploit code.