Exploitation Summary
EIP tracks 2 public exploits for CVE-2006-1377. PoCs published by FarhadKey.
AI-analyzed exploit summary The provided text describes a cross-site scripting (XSS) vulnerability in EasyMoblog due to improper input sanitization. The vulnerability allows arbitrary script execution in the context of the affected site via a crafted URL parameter.
Description
Cross-site scripting (XSS) vulnerability in img.php in (1) EasyMoblog 0.5.1 and (2) CoMoblog 1.1 allows remote attackers to inject arbitrary web script or HTML via the i parameter.
Exploits (2)
The provided text describes a cross-site scripting (XSS) vulnerability in EasyMoblog due to improper input sanitization. The vulnerability allows arbitrary script execution in the context of the affected site via a crafted URL parameter.
The provided text describes a cross-site scripting (XSS) vulnerability in CoMoblog due to insufficient input sanitization. The exploit involves crafting a malicious URL with arbitrary script code to execute in the context of the affected site.