CVE-2011-3859
Trending theme < 0.1 - Cross-Site Scripting via cpage Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2011-3859. PoCs published by SiteWatch.
AI-analyzed exploit summary The provided text describes a cross-site scripting (XSS) vulnerability in the Trending theme for WordPress versions prior to 0.2. The vulnerability arises from insufficient sanitization of user-supplied input, allowing arbitrary script execution in the context of the affected site.
Description
Cross-site scripting (XSS) vulnerability in the Trending theme before 0.2 for WordPress allows remote attackers to inject arbitrary web script or HTML via the cpage parameter.
Exploits (1)
The provided text describes a cross-site scripting (XSS) vulnerability in the Trending theme for WordPress versions prior to 0.2. The vulnerability arises from insufficient sanitization of user-supplied input, allowing arbitrary script execution in the context of the affected site.