Exploitation Summary
EIP tracks 1 public exploit for CVE-2006-6625. PoCs published by Jose Miguel Yanez Venegas.
AI-analyzed exploit summary The provided text describes a cross-site scripting (XSS) vulnerability in Moodle versions 1.6.1 and 1.5, where user-supplied input is not properly sanitized. It includes a proof-of-concept URL demonstrating the XSS exploit.
Description
Cross-site scripting (XSS) vulnerability in mod/forum/discuss.php in Moodle 1.6.1 allows remote attackers to inject arbitrary web script or HTML via the navtail parameter. NOTE: The provenance of this information is unknown; the details are obtained solely from third party information.
Exploits (1)
The provided text describes a cross-site scripting (XSS) vulnerability in Moodle versions 1.6.1 and 1.5, where user-supplied input is not properly sanitized. It includes a proof-of-concept URL demonstrating the XSS exploit.