Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
CVE-2017-16567 — Proof-of-concept exploit for a persistent cross-site scripting (XSS) vulnerability in Logitech Media Server 7.9.0, demonstrating script injection via the favorites tab. | Kitploit
Tools/GitHubGitHub/dewankpant/cve-2017-16567
Vulnerability AnalysisExploitationWeb Application ExploitationWeb SecurityPenetration Testing
GitHubdewankpant/cve-2017-16567

CVE-2017-16567

Proof-of-concept exploit for a persistent cross-site scripting (XSS) vulnerability in Logitech Media Server 7.9.0, demonstrating script injection via the favorites tab.

View Repository
1128 years agoNot yet reviewed

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

CVE-2017-16567

  1. Exploit Title: Logitech Media Server : Persistent Cross Site Scripting(XSS)
  2. Shodan Dork: Search Logitech Media Server
  3. Date: 11/03/2017
  4. Exploit Author: Dewank Pant
  5. Vendor Homepage: www.logitech.com
  6. Version: 7.9.0
  7. Tested on: Windows 10, Linux

POC:

  1. Access and go to the favorites tab and add a new favorite.
  2. Add script as the value of the field.
  3. Payload :
  4. Script saved and gives a pop-up to user every time they access that page.
Download Tool