Exploitation Summary
EIP tracks 1 public exploit for CVE-2005-3954. PoCs published by gb.network.
AI-analyzed exploit summary This exploit demonstrates a cross-site scripting (XSS) vulnerability in blogBuddies due to insufficient input sanitization. The PoC shows how arbitrary JavaScript can be executed in the context of the affected site via a crafted URL parameter.
Description
Cross-site scripting (XSS) vulnerability in blogBuddies 0.3 allows remote attackers to inject arbitrary web script or HTML via the u parameter to index.php.
Exploits (1)
This exploit demonstrates a cross-site scripting (XSS) vulnerability in blogBuddies due to insufficient input sanitization. The PoC shows how arbitrary JavaScript can be executed in the context of the affected site via a crafted URL parameter.