header-logo
Suggest Exploit
vendor:
Geeklog
by:
SecurityFocus
7.5
CVSS
HIGH
Cross-site Scripting and SQL Injection
79, 89
CWE
Product Name: Geeklog
Affected Version From: N/A
Affected Version To: N/A
Patch Exists: YES
Related CWE: N/A
CPE: N/A
Metasploit: N/A
Other Scripts: N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References: N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2002

Geeklog Multiple Vulnerabilities

Geeklog is prone to multiple vulnerabilities, including cross-site scripting and SQL injection issues. Exploitation of these issues could permit unauthorized access to user accounts and sensitive information.

Mitigation:

Ensure that all user-supplied input is validated and filtered before being used in SQL queries.
Source

Exploit-DB raw data:

source: https://www.securityfocus.com/bid/8718/info
 
Geeklog is prone to multiple vulnerabilities, including cross-site scripting and SQL injection issues. Exploitation of these issues could permit unauthorized access to user accounts and sensitive information.
 
Some of these issues may be related to previously documented vulnerabilities in Geeklog. 


http://www.example.com/faqman/index.php?op=view&t=518">[XSS ATTACK CODE]

http://www.example.com/filemgmt/brokenfile.php?lid=17'/%22%3[XSS ATTACK CODE]