CVE-2006-6777
Future Internet - Cross-Site Scripting via categoryId Parameter
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2006-6777. PoCs published by Linux_Drox.
AI-analyzed exploit summary The provided text describes input-validation vulnerabilities in Future Internet, including XSS and SQL injection, but does not contain executable exploit code. It references a generic example URL for XSS demonstration.
Description
Cross-site scripting (XSS) vulnerability in index.cfm in Future Internet allows remote attackers to inject arbitrary web script or HTML via the categoryId parameter in a Portal.ShowPage action.
Exploits (1)
The provided text describes input-validation vulnerabilities in Future Internet, including XSS and SQL injection, but does not contain executable exploit code. It references a generic example URL for XSS demonstration.