CVE-2004-0673
SCI Photo Chat Server 3.4.9 - Cross-Site Scripting via Error Message
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2004-0673. PoCs published by Donato Ferrante.
AI-analyzed exploit summary This is a writeup describing a cross-site scripting (XSS) vulnerability in SCI Photo Chat. The vulnerability arises from improper sanitization of user-supplied URI input, allowing arbitrary script execution in the context of the web server.
Description
Cross-site scripting (XSS) vulnerability in SCI Photo Chat Server 3.4.9 allows remote attackers to execute arbitrary web script as other users via an invalid request that is echoed in the resulting error message.
Exploits (1)
This is a writeup describing a cross-site scripting (XSS) vulnerability in SCI Photo Chat. The vulnerability arises from improper sanitization of user-supplied URI input, allowing arbitrary script execution in the context of the web server.