4.3
CVSSv2

CVE-2015-6518

Published: 18/08/2015 Updated: 12/03/2019
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 435
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Multiple cross-site scripting (XSS) vulnerabilities in phpLiteAdmin 1.1 allow remote malicious users to inject arbitrary web script or HTML via the (1) PATH_INFO, (2) droptable parameter, or (3) table parameter to phpliteadmin.php.

Vulnerable Product Search on Vulmon Subscribe to Product

phpliteadmin phpliteadmin 1.1

Exploits

# Exploit Title: CSRF & XSS # Google Dork: intitle: CSRF & XSS # Date: 2015-07-05 # Exploit Author: John Page ( hyp3rlinx ) # Website: hyp3rlinxaltervistaorg # Vendor Homepage: bitbucketorg/phpliteadmin # Software Link: bitbucketorg/phpliteadmin # Version: v11 # Tested on: windows 7 # Category: webapps Vendor: ====================== ...