Exploitation Summary
EIP tracks 2 public exploits for CVE-2005-3955. PoCs published by gb.network.
AI-analyzed exploit summary This exploit demonstrates a cross-site scripting (XSS) vulnerability in blogBuddies due to improper input sanitization. The PoC shows how arbitrary script code can be executed in the context of the affected site via a crafted URL.
Description
Multiple cross-site scripting (XSS) vulnerabilities in MagpieRSS 7.1, as used in (a) blogBuddiesv 0.3, (b) Jaws 0.6.2, and possibly other products, allow remote attackers to inject arbitrary web script or HTML via the (1) url parameter to (a) magpie_debug.php and (2) rss_url parameter to (b) magpie_slashbox.php and (c) simple_smarty.php.
Exploits (2)
This exploit demonstrates a cross-site scripting (XSS) vulnerability in blogBuddies due to improper input sanitization. The PoC shows how arbitrary script code can be executed in the context of the affected site via a crafted URL.
This exploit demonstrates a cross-site scripting (XSS) vulnerability in blogBuddies due to improper input sanitization. The PoC shows how arbitrary script code can be executed in the context of the affected site via a crafted URL.