CVE-2006-1745
bitweaver 1.3 - Cross-Site Scripting via Login Error Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2006-1745. PoCs published by KaDaL-X.
AI-analyzed exploit summary The provided text describes multiple XSS vulnerabilities in Bitweaver CMS due to insufficient input sanitization. It includes example URLs demonstrating how arbitrary script code can be executed in a user's browser context.
Description
Cross-site scripting (XSS) vulnerability in login.php in Bitweaver 1.3 allows remote attackers to inject arbitrary web script or HTML via the error parameter. NOTE: the provenance of this information is unknown; the details are obtained solely from third party information.
Exploits (1)
The provided text describes multiple XSS vulnerabilities in Bitweaver CMS due to insufficient input sanitization. It includes example URLs demonstrating how arbitrary script code can be executed in a user's browser context.