CVE-2005-1285
WoltLab Burning Board < 2.3.1 - Cross-Site Scripting via Highlight Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2005-1285. PoCs published by deluxe89.
AI-analyzed exploit summary The provided text describes a cross-site scripting (XSS) vulnerability in WoltLab Burning Board, where user-supplied input is not properly sanitized. The vulnerability can be exploited via a crafted URL containing malicious script in the 'hilight' parameter.
Description
Cross-site scripting (XSS) vulnerability in thread.php in WoltLab Burning Board 2.3.1 and earlier allows remote attackers to inject arbitrary web script or HTML via the hilight parameter.
Exploits (1)
The provided text describes a cross-site scripting (XSS) vulnerability in WoltLab Burning Board, where user-supplied input is not properly sanitized. The vulnerability can be exploited via a crafted URL containing malicious script in the 'hilight' parameter.