CVE-2006-5060
Jamroom 3.0.16 - Cross-Site Scripting via Forgot Parameter in Login Page
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2006-5060. PoCs published by meto5757.
AI-analyzed exploit summary The provided text describes a cross-site scripting (XSS) vulnerability in Jamroom, where unsanitized user input in the 'forgot' parameter of login.php can execute arbitrary script code in a user's browser context.
Description
Cross-site scripting (XSS) vulnerability in login.php in Jamroom 3.0.16 and possibly earlier allows remote attackers to inject arbitrary web script or HTML via the forgot parameter in the forgot mode.
Exploits (1)
The provided text describes a cross-site scripting (XSS) vulnerability in Jamroom, where unsanitized user input in the 'forgot' parameter of login.php can execute arbitrary script code in a user's browser context.