CVE-2006-5503
Simple Machines Forum 1.1 RC2 - Cross-Site Scripting via Index.php Action Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2006-5503. PoCs published by b0rizQ.
AI-analyzed exploit summary This exploit demonstrates a cross-site scripting (XSS) vulnerability in Simple Machines Forum (SMF) by injecting arbitrary JavaScript code via the 'action' parameter in the URL. The vulnerability arises due to insufficient input sanitization.
Description
Cross-site scripting (XSS) vulnerability in index.php in Simple Machines Forum (SMF) 1.1 RC2 allows remote attackers to inject arbitrary web script or HTML via the action parameter.
Exploits (1)
This exploit demonstrates a cross-site scripting (XSS) vulnerability in Simple Machines Forum (SMF) by injecting arbitrary JavaScript code via the 'action' parameter in the URL. The vulnerability arises due to insufficient input sanitization.