CVE-2005-4047
IISWorks ASPKnowledgeBase 2.0 - Cross-Site Scripting via kb.asp a Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2005-4047. PoCs published by r0t.
AI-analyzed exploit summary This exploit demonstrates a cross-site scripting (XSS) vulnerability in ASPKnowledgeBase due to improper input sanitization. The PoC provides URLs with injected script tags that execute arbitrary JavaScript in the context of the affected site.
Description
Cross-site scripting (XSS) vulnerability in kb.asp in IISWorks ASPKnowledgeBase 2.0 allows remote attackers to inject arbitrary web script or HTML via the a parameter.
Exploits (1)
This exploit demonstrates a cross-site scripting (XSS) vulnerability in ASPKnowledgeBase due to improper input sanitization. The PoC provides URLs with injected script tags that execute arbitrary JavaScript in the context of the affected site.