Exploitation Summary
EIP tracks 1 public exploit for CVE-2006-0366. PoCs published by kurdish hackers team.
AI-analyzed exploit summary This exploit demonstrates a script-injection vulnerability in Phpclanwebsite by nesting BBCode IMG tags to execute arbitrary JavaScript code in a user's browser. The PoC uses a simple XSS payload to trigger an alert dialog.
Description
Cross-site scripting (XSS) vulnerability in Phpclanwebsite (aka PCW) allows remote attackers to inject arbitrary web script or HTML via a javascript URI in a BBCode img tag.
Exploits (1)
This exploit demonstrates a script-injection vulnerability in Phpclanwebsite by nesting BBCode IMG tags to execute arbitrary JavaScript code in a user's browser. The PoC uses a simple XSS payload to trigger an alert dialog.