CVE-2005-0872
phpBB Topic Calendar 1.0.1 - Cross-Site Scripting via Start Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2005-0872. PoCs published by Alberto Trivero.
AI-analyzed exploit summary The provided text describes a cross-site scripting (XSS) vulnerability in Topic Calendar, where user-supplied input is not properly sanitized. The example URL demonstrates how arbitrary script code can be executed in a user's browser.
Description
Cross-site scripting (XSS) vulnerability in calendar_scheduler.php in the Topic Calendar 1.0.1 module for phpBB allows remote attackers to inject arbitrary web script or HTML via the start parameter.
Exploits (1)
The provided text describes a cross-site scripting (XSS) vulnerability in Topic Calendar, where user-supplied input is not properly sanitized. The example URL demonstrates how arbitrary script code can be executed in a user's browser.