CVE-2013-5312
Vastal phpVID 1.2.3 - Cross-Site Scripting via Browse Videos or Groups Parameters
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2013-5312. PoCs published by 3spi0n.
AI-analyzed exploit summary This document describes multiple vulnerabilities in PhpVID Script, including SQL injection, XSS, and CRLF injection. It provides example URLs to exploit these vulnerabilities but does not include executable exploit code.
Description
Multiple cross-site scripting (XSS) vulnerabilities in Vastal I-Tech phpVID 1.2.3 allow remote attackers to inject arbitrary web script or HTML via the (1) n parameter to browse_videos.php or the (2) cat parameter to groups.php.
Exploits (1)
This document describes multiple vulnerabilities in PhpVID Script, including SQL injection, XSS, and CRLF injection. It provides example URLs to exploit these vulnerabilities but does not include executable exploit code.