Exploitation Summary
EIP tracks 1 public exploit for CVE-2003-0404. PoCs published by Ramon Pinuaga Cascales.
AI-analyzed exploit summary The provided text describes a cross-site scripting (XSS) vulnerability in Vignette StoryServer versions 4 to 6. It includes example URLs demonstrating how an attacker could inject malicious scripts to execute in the context of a vulnerable site.
Description
Multiple Cross Site Scripting (XSS) vulnerabilities in Vignette StoryServer 4 and 5, and Vignette V/5 and V/6, allow remote attackers to insert arbitrary HTML and script via text variables, as demonstrated using the errInfo parameter of the default login template.
Exploits (1)
The provided text describes a cross-site scripting (XSS) vulnerability in Vignette StoryServer versions 4 to 6. It includes example URLs demonstrating how an attacker could inject malicious scripts to execute in the context of a vulnerable site.