CVE-2006-6022
BestWebApp Dating Site - Stored Cross-Site Scripting via Login Form Msg Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2006-6022. PoCs published by laurent gaffie.
AI-analyzed exploit summary The provided text describes multiple input-validation vulnerabilities in BestWebApp Dating Site, including XSS and SQL injection, but does not contain actual exploit code. It references a specific URL parameter (`login_form.asp?msg=[xss here]`) as an example of an XSS vulnerability.
Description
Cross-site scripting (XSS) vulnerability in login_form.asp in BestWebApp Dating Site allows remote attackers to inject arbitrary web script or HTML via the msg parameter.
Exploits (1)
The provided text describes multiple input-validation vulnerabilities in BestWebApp Dating Site, including XSS and SQL injection, but does not contain actual exploit code. It references a specific URL parameter (`login_form.asp?msg=[xss here]`) as an example of an XSS vulnerability.