CVE-2012-5226
Peel SHOPPING 2.8 and 2.9 - Cross-Site Scripting via motclef Parameter or PATH_INFO
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2012-5226. PoCs published by Cyber-Crystal.
AI-analyzed exploit summary The provided code is a writeup describing XSS and SQL injection vulnerabilities in Peel SHOPPING versions 2.8 and 2.9. It includes URLs with injection points but lacks executable exploit code.
Description
Multiple cross-site scripting (XSS) vulnerabilities in Peel SHOPPING 2.8 and 2.9 allow remote attackers to inject arbitrary web script or HTML via the (1) motclef parameter to achat/recherche.php or (2) PATH_INFO to index.php.
Exploits (1)
The provided code is a writeup describing XSS and SQL injection vulnerabilities in Peel SHOPPING versions 2.8 and 2.9. It includes URLs with injection points but lacks executable exploit code.