The exploit demonstrates multiple vulnerabilities in plogger 1.0 (RC1), including reflected XSS, stored XSS, and CSRF. It provides functional proof-of-concept code for each vulnerability, including HTTP requests and HTML forms.
Classification
Working Poc 95%
Attack Type
Xss
Complexity
Trivial
Reliability
Reliable
Target:plogger 1.0 (RC1)
Auth required
Prerequisites:Access to the target application · For stored XSS and CSRF, attacker needs to be logged in