CVE-2006-6721
Knusperleicht ShoutBox 2.6 - Cross-Site Scripting via sbNick or sbKommentar Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2006-6721. PoCs published by IMHOT3B.
AI-analyzed exploit summary This HTML file demonstrates an HTML injection vulnerability in Knusperleicht Shoutbox 2.6. It provides a form to submit malicious input that bypasses sanitization, allowing arbitrary HTML and script execution in the context of the affected site.
Description
Multiple cross-site scripting (XSS) vulnerabilities in shout.php in Knusperleicht ShoutBox 2.6 allow remote attackers to inject arbitrary web script or HTML via the (1) sbNick or (2) sbKommentar parameter.
Exploits (1)
This HTML file demonstrates an HTML injection vulnerability in Knusperleicht Shoutbox 2.6. It provides a form to submit malicious input that bypasses sanitization, allowing arbitrary HTML and script execution in the context of the affected site.